Usable with caveats: it has regular releases, recent source changes, and two equally active contributors, but the package has no license and no tests or security policy. Confirm licensing and test coverage before making it a core dependency.
68%
Total Score
100
100
69
75
No declared license or license file was found in the package or repository, leaving the terms for using this payment integration unclear.
The artifact includes release notes and the repository uses GitHub Releases, but neither contains tests or a conventional changelog. For a payment integration, the lack of visible automated tests is a meaningful maintenance gap.
The repository name does not match the package name, and the collected README mention is null, so the repository-package relationship is not clearly demonstrated. This creates a transparency concern even though the mismatch could reflect a repository containing a related integration.
Composer is used for builds, but no security scanning tool is configured. That weakens automated supply-chain hygiene without indicating abandonment by itself.
The repository has no security policy, leaving vulnerability reporting and response expectations undocumented for a payment-related package.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
magento/framework Version >=103.0.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.