There is no security policy, automated security scanning, or test suite, while adoption is very small. The MIT license, clear README, matching repository, and organization ownership provide useful transparency but do not offset the long maintenance gap.
44%
Total Score
100
69
75
The package has had no release in the last 12 months, and its latest release was on May 17, 2022, indicating a prolonged maintenance gap.
The repository has only 2 stars, 0 forks, and 0 watchers, providing little evidence of broad adoption or an active user community.
Composer build tooling is present, but no security scanning tools are configured, reducing automated coverage for a package that handles payment gateway requests.
The repository is not archived, which is a meaningful compensating signal, but it was last pushed on April 30, 2018, showing that source maintenance has effectively stopped.
The repository has no security policy, leaving vulnerability reporting and response expectations undocumented.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.