The release includes notes and a usable README, and the organization-backed repository is small and focused. It has no declared or detected license, and the repository does not identify this package in its README.
58%
Total Score
75
100
75
100
No declared license, license file, or repository license file was detected, leaving the legal terms for using this dependency unclear.
The package has only 3 releases and none in the last 12 months; its latest release was about 17 months ago, indicating a meaningful maintenance slowdown.
There were 0 commits and 0 active maintainers in the last 3 months, a concrete sign that maintenance may have paused.
The repository name does not match the package name and its README does not mention the package, so the package-to-source relationship is less transparent than expected.
The repository uses Composer, but no security scanning tooling was detected; this is a modest transparency and maintenance gap rather than a severe risk.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
pay-now/paynow-magento2 Version * | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.