The MIT license, focused dependency set, and matching repository make adoption straightforward. Expect a young project with limited public traction and no published security process.
76%
Total Score
100
100
86
75
The package is only 47 days old, with seven releases and a median interval of about 3.5 hours. This shows active iteration but leaves limited evidence of long-term maturity.
Composer build tooling is present, but no security scanning tools were detected. This is a modest security-process gap rather than evidence of abandonment.
The repository has no published security policy, leaving vulnerability reporting and handling expectations unclear for a payment-related integration.
Both workflows were analyzed without injection or high-severity findings, but all three action references are unpinned. That weakens build reproducibility and update control.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/support Version ^10.0|^11.0|^12.0|^13.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.