Risky to adopt: this payment gateway has had only one release, with no recorded repository activity since October 2020. The repository is not archived, but its tiny README and lack of recent maintenance make ongoing support and safe integration uncertain.
42%
Total Score
0
69
100
The package has only one release, first and latest published about 5 years and 11 months ago, with no releases in the last 12 months. That is strong evidence of abandonment for a payment integration package.
The repository recorded zero commits and zero active maintainers in the last 3 months, consistent with the last push occurring about 5 years and 11 months ago. No provided activity signal compensates for this prolonged inactivity.
A README is present, but it contains only 25 characters and the repository has no tests or changelog. Missing tests and changelog are normal for published artifacts, but the extremely limited consumer documentation is a real integration concern for a payment package.
The repository name matches the package, which supports the link, but the README does not mention the package. This weakens transparency about how the published package relates to its source.
Composer is used as a build tool, which is appropriate, but no security scanning tooling is present. This is a modest transparency and maintenance gap, not evidence that the package is unsafe by itself.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.