The README, MIT license, and small dependency surface make the package straightforward to evaluate and integrate. Its long inactivity and lack of a security policy leave substantial abandonment and maintenance risk.
38%
Total Score
25
100
86
75
The last release was published in June 2016, about 10 years ago, with no releases in the past 12 months. This is strong evidence that the package is no longer actively maintained.
The repository recorded no commits and no active maintainers in the past 3 months, consistent with the long release gap and increasing abandonment risk.
There was no issue or pull request activity in the past month, while one issue remains open. This reinforces the lack of current maintenance attention.
The repository has no security policy, leaving no documented channel or process for reporting vulnerabilities. This is a meaningful transparency gap for a payment gateway integration.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
omnipay/common Version ~2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.