Gateway-agnostic payment processing with a Stripe driver.
72%
Total Score
75
100
78
90
Only one registry account has publish access. This is a modest publishing continuity concern, although the repository is owned by an organization, which provides some backing beyond the registry account.
The package is only 80 days old with four releases, so its maintenance history is still limited, even though the latest release was published recently and releases have been regular.
One contributor made all 11 commits in the last 3 months, creating a clear continuity and bus-factor risk. Organization ownership partially mitigates the risk because maintenance can potentially be handed off.
The repository has zero stars, forks, and watchers, so there is little external adoption evidence. Low popularity is supporting caution rather than a decisive health failure for a young package.
Composer build tooling is present, but no security scanning tools are configured. The missing scanning reduces assurance for a payment-related dependency, though it is not evidence of malicious behavior.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
stripe/stripe-php Version ^20.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.