Clear documentation and release notes make integration easier. The project shows ongoing maintenance, multiple recent contributors, and basic security and build practices, despite modest popularity and one registry maintainer.
88%
Total Score
70
100
100
100
Only one registry account has publish access, which is a modest continuity concern, though repository activity shows broader recent participation.
The repository is owned by an individual account rather than an organization, so the single registry maintainer is relevant to continuity; recent activity from three contributors partly offsets that risk.
There is only one open issue and one open pull request, with one new issue in the last month; the lack of recent closures is a small unresolved-work signal but not evidence of abandonment.
| Title | Versions | Severity |
|---|---|---|
CVE-2026-31843 goodoneuz/pay-uz is vulnerable to Improper Access Control in versions 0.0.0 - 2.2.24. | 0.0.0 - 2.2.24 | Critical |
| Dependency | Last Release | Score |
|---|---|---|
illuminate/http Version * | — | — |
stripe/stripe-php Version * | — | — |
illuminate/support Version * | — | — |
illuminate/database Version * | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.