Paggi PHP SDK - Ecommerce
42%
Total Score
unhealthy
Risky: releases stopped in 2019 and repository commits stopped in 2020, indicating likely abandonment.
The package has had no release in over 7 years: its latest release was January 2019, with zero releases in the last 12 months. Eight releases over its early period show initial activity but do not offset the prolonged silence.
The repository recorded zero commits and zero active maintainers in the last 3 months, consistent with the release gap and raising substantial abandonment risk.
The repository is owned by an organization, providing some backing context, but observed release and commit activity remains the stronger evidence and is stale.
Composer build tooling is present, but no security scanning tools were detected. For an ecommerce SDK, that is a modest transparency and maintenance weakness.
The repository is not archived, which is a positive counter-signal, but its last push was in July 2020 and therefore does not meaningfully offset the lack of current maintenance.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
lcobucci/jwt Version 3.2.4 | — | — |
guzzlehttp/guzzle Version @stable | — | — |
doctrine/inflector Version ^1.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.