The MIT declaration and matching repository provide basic ownership and licensing clarity. Its minimal two-file tree and missing consumer documentation, tests, and security policy leave limited evidence of maturity for a Laravel integration.
55%
Total Score
100
86
75
Both the published artifact and repository contain only two files: composer.json and src/ServiceProvider.php. That minimal structure offers little evidence of implementation coverage or project maturity.
The package has no README, while tests and a changelog are normally repository concerns and are not expected in every published artifact. Missing consumer documentation is a real gap for a Laravel integration package.
This is a new package, 109 days old, with only one release and no established release interval. That limited history makes long-term maintenance harder to assess.
The linked repository has no security policy. This is a modest transparency gap for a package handling payment integration, though it is not severe on its own.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/support Version ^10.0|^11.0|^12.0|^13.0 | — | — |
felixmuhoro/laravel-mpesa Version ^1.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.