The codebase is substantial, the release is stable, and installation has no lifecycle scripts. Organization backing and a clear license add useful transparency.
67%
Total Score
83
100
79
75
The package has no README, while tests and a changelog are absent in both the artifact and repository. Missing tests and changelog are normal packaging practice, but the missing README is a real documentation gap for a WooCommerce payment integration.
The package is young at 160 days with three releases, but its median release interval is about 42 days and all three releases were within the last 12 months. The cadence is reasonable, though the short track record limits maturity evidence.
Only one commit was recorded in the last three months, indicating limited recent development activity. Recent releases provide some counter-evidence, but the maintenance signal remains thin.
Composer is used for builds, but no security-scanning tooling was detected. For a payment gateway, that missing security automation is a meaningful hygiene concern.
The repository has no security policy. That weakens the documented process for reporting and handling vulnerabilities in a package involved in payment processing.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
composer/installers Version ^2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.