It has a clear README, an MIT license, and no install-time scripts. The small project has no security policy and shows little evidence of ongoing support for a payment integration.
42%
Total Score
0
71
75
The package has only one release, published about 10 years ago, with no releases in the last 12 months. That is strong evidence of abandonment for a library handling payment integration.
There were zero commits and zero active maintainers in the last 3 months, consistent with a project that has not been maintained since 2016.
Composer build tooling is present, but no security scanning tools were detected. This is a modest maintenance-hygiene gap, not evidence that the release is unsafe by itself.
The repository has no security policy. That is a transparency and vulnerability-reporting gap for a package used in payment flows.
Version 0.1 is not a stable major release, adding maturity uncertainty. This is secondary to the package's much more significant lack of release activity.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/support Version 5.1.* || 5.2.* || 5.3.* | — | — |
illuminate/contracts Version 5.1.* || 5.2.* || 5.3.* | — | — |
graham-campbell/manager Version ^2.3 | — | — |
paypal/rest-api-sdk-php Version 1.7.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.