The package includes tests, a substantial README, and release notes for this version. It has an MIT license and no install-time scripts, while its single-person ownership leaves limited redundancy.
70%
Total Score
50
50
94
67
Nine runtime dependencies, including Guzzle, Sabre XML, and phpseclib, create a meaningful dependency surface for a library handling certificates and invoice submission, though the profile is not inherently excessive.
Only one registry maintainer account is listed. The repository is also user-owned rather than organization-backed, leaving limited visible redundancy if that maintainer becomes unavailable.
The registry namespace and repository owner match, but both are associated with a personal user account rather than an organization, so there is no demonstrated institutional backing.
The repository recorded zero commits and zero active maintainers in the last three months. That recent inactivity is a maintenance concern for a library integrating with an external compliance API.
There is one new issue in the last month and no closed issues or merged pull requests, suggesting limited recent resolution activity, although the small open issue count keeps this from being severe.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
sabre/xml Version ^4.0 | — | — |
guzzlehttp/guzzle Version ^7.9 | — | — |
phpseclib/phpseclib Version ^3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.