Its MIT license and small Composer dependency set reduce adoption friction. The project has only one release and a two-file source tree, with no tests, README, security policy, or recent development activity shown.
55%
Total Score
50
100
79
50
Both the artifact and repository contain only composer.json and src/ServiceProvider.php, leaving little visible implementation or documentation to establish maturity.
The published artifact has no README, tests, or changelog, and the repository also reports no tests or changelog. The missing README reduces consumer transparency for a Laravel integration package.
The package is 107 days old with only one release and no established release interval, so maintenance maturity is not yet demonstrated.
The repository shows no issues or pull requests and no activity in the last month; combined with the single release, this provides little evidence of active maintenance.
Composer is used as the build tool, which fits the package ecosystem, but no security scanning tools are reported. This is a minor transparency gap rather than a severe risk.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/support Version ^10.0|^11.0|^12.0|^13.0 | — | — |
felixmuhoro/laravel-mpesa Version ^1.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.