The README is usable and the package has a small dependency surface, with no install-time scripts. Its maintenance record is weak, and the repository has no security scanning or security policy, so adopting it carries meaningful abandonment risk.
43%
Total Score
0
100
75
75
The repository recorded zero commits and zero active maintainers during the last three months, consistent with its last push in June 2021. This is strong evidence of abandonment risk for a package used to integrate payments.
Only two releases were published, both in June 2021, with no releases in the last 12 months. The short initial seven-day release interval does not offset more than five years without a new release.
Composer is used for the build, but no security scanning tools are present. For a payment integration package, that is a genuine maintenance and transparency gap.
The repository has no security policy. This weakens disclosure and maintenance transparency, particularly for software handling payment flows.
Version 0.91 is not a stable major release, although it is not marked as a prerelease. This is a minor maturity concern alongside the long period without updates.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.