Documentation, licensing, and a clean install profile reduce adoption friction. The single-user project has little visible activity and no security policy, so future fixes and maintenance are uncertain.
55%
Total Score
50
100
83
75
Only one registry publishing maintainer is listed. Because the project is user-owned rather than organization-backed, this leaves a thin publishing and continuity base.
The package has six releases since July 2021, but none in the last 12 months and the latest release was about two years ago, indicating slowed maintenance.
There were no commits and no active maintainers in the last three months, consistent with the roughly two-year release gap and raising abandonment risk.
The repository has zero stars and forks and one watcher. This is weak supporting evidence for maturity, though popularity alone is not decisive for a small bundle.
Composer is used for builds, but no security scanning tooling is reported. The missing scanner is a hygiene gap rather than evidence of unsafe code.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
stev/btipay Version ^1.4 | — | — |
symfony/framework-bundle Version 6.*|7.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.