Clear documentation, tests, and licensing make the package straightforward to inspect and integrate. Its very small user base, absent security scanning, and long inactivity leave maintenance and compatibility risks for a payment library.
38%
Total Score
0
100
69
67
The package has had no release in over six years, despite only four releases overall; this is strong evidence of abandonment for a payment integration library.
The repository recorded zero commits and zero active maintainers in the last three months, confirming that development has stopped rather than merely slowed.
One star, zero forks, and zero watchers provide little evidence of a broad support or review community; this is supporting caution rather than a verdict by itself.
Composer is used for the build, but no security-scanning tooling is present, reducing automated oversight of dependency and build risks.
The repository is not archived, which avoids an explicit abandonment marker, but its last push was in August 2020 and does not offset the inactive release and commit history.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
payum/iso4217 Version 1.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.