The repository is well documented, tested, licensed, and backed by an organization. Workflow references are all unpinned, and the project has no security policy or automated security scanning, so future maintenance deserves attention.
64%
Total Score
67
100
88
75
The package has 18 releases over more than 11 years, but none in the last 12 months; the latest release was in January 2025. This indicates a meaningful maintenance slowdown for a payment API library.
There were zero commits and zero active maintainers in the last three months, consistent with no release in the last 12 months. This is the strongest sign that ongoing maintenance has stalled.
There were no new or closed issues or pull requests in the last month, despite 8 open issues and 2 open pull requests. This suggests limited current responsiveness.
The repository uses Composer, but no security scanning tools were detected. For a payment integration library, the missing security automation is a real hygiene gap.
No security policy was found in the repository. For a library handling payment API integrations, this reduces transparency about vulnerability reporting and response.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.