It includes a clear README, tests, and a valid MIT license. The lack of a security policy and automated security scanning leaves less formal security transparency.
82%
Total Score
100
100
94
75
Composer is used for builds, but no security scanning tooling was detected. The missing scanning reduces automated supply-chain assurance, though it is not by itself evidence of an unsafe release.
No repository security policy was found. For a payment-gateway integration library, this is a genuine transparency gap, although recent commits and a clear README provide some compensating project evidence.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
ondrakoupil/tools Version ^1.2.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.