The package contains only a service provider and manifest, and offers no README for consumers. Its declared MIT license, stable version, and lack of install scripts or deprecation are reassuring, but one release leaves maintenance maturity unproven.
58%
Total Score
100
86
67
Both the artifact and repository contain only composer.json and src/ServiceProvider.php. That unusually small tree leaves little visible documentation or implementation context for judging maturity.
The published artifact has no README, reducing consumer guidance for a Laravel integration package. The absence of tests and a changelog is normal packaging practice and is not treated as a gap here.
This is the only release, published 109 days ago, so there is little evidence of an established maintenance cycle. That is a meaningful maturity gap, though not evidence of abandonment by itself.
The repository has no security policy, reducing transparency around vulnerability reporting and response. This is a modest concern rather than a release-blocking issue for a very small package.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/support Version ^10.0|^11.0|^12.0|^13.0 | — | — |
felixmuhoro/laravel-mpesa Version ^1.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.