支付扩展包
38%
Total Score
unhealthy
Risky to adopt: no releases since 2018 and the package has no declared or detected license.
No declared license, license file, or detected repository license was found. That creates a material legal and reuse risk for adoption.
The package has had only 2 releases, both in November 2018, with no release in about 7 years and 10 months. That strongly indicates abandonment risk for a payment library.
The repository has only 2 stars, 0 forks, and 1 watcher. Popularity is supporting evidence rather than a verdict, but these numbers provide little evidence of broad review or community support.
The repository has no security policy. For a package handling payment integrations, this is a meaningful transparency and vulnerability-reporting gap.
The assessed release is v1.0.0, while the registry reports v0.0.1 as the latest version and no recent prerelease activity. This inconsistency weakens confidence in release metadata and version maintenance.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ^6.0 | — | — |
symfony/http-foundation Version ^3.0|^4.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.