The package includes tests, a changelog, a declared license, security policy, and CodeQL scanning, making it straightforward to inspect. Pin this version only if its older PHP and PagSeguro API support fits your application.
52%
Total Score
50
70
100
The latest release was about five years ago, and there were no releases in the last 12 months. That indicates substantially reduced maintenance despite a history of 18 releases and a previously regular cadence.
One registry maintainer account, PagSeguro, is consistent with a single publisher but provides little visible publishing redundancy. The linked repository is user-owned rather than organization-owned, so the narrow base is a modest maintenance concern.
The repository recorded no commits and no active maintainers in the last three months. Combined with the stale release history, this raises abandonment risk.
There were no new or merged pull requests in the last month, and no issue activity was recorded. This is consistent with the broader inactivity signal, though the null open-issue count limits what can be concluded.
The repository reports zero stars, forks, and watchers, offering no community-adoption evidence. Popularity is supporting evidence rather than a verdict, so this reinforces but does not independently establish the maintenance concern.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.