The package has minimal consumer documentation and limited project-level safeguards. It is a stable, non-deprecated first release, but its small source tree provides little evidence of long-term maintenance.
58%
Total Score
100
81
75
The artifact and repository each contain only composer.json and src/ServiceProvider.php. That very small implementation leaves limited evidence of maturity, documentation, or test coverage.
The package has no README, tests, or changelog. Missing tests and changelog are normal in published artifacts, but a missing README is a real documentation gap for a Laravel library.
This is the only release, published 110 days ago, so there is little history to demonstrate sustained maintenance. Its recent creation partly limits how strongly this weighs against adoption.
Composer is used appropriately, but no security-scanning tooling is reported. This is a modest project-hygiene gap rather than evidence of abandonment by itself.
The repository has no security policy. For a package associated with payment functionality, this reduces transparency about vulnerability reporting and handling.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/support Version ^10.0|^11.0|^12.0|^13.0 | — | — |
felixmuhoro/laravel-mpesa Version ^1.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.