The generated SDK matches its repository and declares an MIT license. Its small dependency surface and lack of install-time scripts reduce operational risk, but the available evidence for ongoing project support is limited.
56%
Total Score
50
100
78
83
Only two releases were published, with the latest on July 12, 2024; there have been no releases in the last 12 months despite the package being over two years old. This is meaningful abandonment risk for a payment SDK.
The repository is owned by an individual account rather than an organization, so the available ownership context shows limited institutional backing for long-term maintenance.
The repository has zero stars and forks and only one watcher. Popularity is supporting evidence rather than a verdict, but these counts provide little independent evidence of community review or support.
Composer is used for builds, but no security-scanning tooling is configured. That weakens maintenance and release-quality transparency for a payment integration.
The repository has no security policy, leaving no documented process for reporting or handling security issues in a payment-related SDK.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
wsdltophp/packagebase Version ~5.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.