Healthy for early adopters, with some caveats. It has frequent recent releases, active repository work, clear documentation, and organization backing, but the project is very young, has almost no public adoption, and most recent commits come from one contributor.
78%
Total Score
75
100
83
90
One contributor made 13 of 15 recent commits, creating concentration risk; organization backing and a second active contributor provide some handoff capacity.
There are no open issues or pull requests and no activity in the last month. This is not inherently negative for a young, small project, but it provides little evidence of an established support community.
The repository has zero stars, forks, and watchers, so there is little public adoption evidence; this is a concern for maturity but is partly explained by the package being only 64 days old.
Composer is used as the build tool, but no security scanning tools were detected, leaving a transparency and automated assurance gap.
The repository has no security policy, which leaves vulnerability-reporting expectations unclear for a package handling payment and security-related interfaces.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.