It has tests, a long README, release notes, and no install scripts. Its 21 runtime dependencies and absent security scanning increase maintenance exposure.
58%
Total Score
50
50
86
100
The package declares 21 runtime dependencies spanning many payment providers, creating substantial upstream maintenance and compatibility exposure.
This is the only release, published about 1 year 10 months ago, with no releases in the last 12 months. That limits evidence of ongoing maintenance.
The repository recorded no commits and no active maintainers in the last 3 months, consistent with the long release gap and increasing abandonment risk.
Composer build tooling is present, but no security scanning tools are configured. That is a transparency and maintenance gap for a payment integration package.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
tzsk/payu Version ^7.0.0 | — | — |
square/square Version 37.1.0.20240604 | — | — |
srmklive/paypal Version ~3.0 | — | — |
php-http/message Version ^1.16 | — | — |
sharifur/payfast Version ^v2.0.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.