Usable with caveats: the package is clearly licensed, documented, tested, and backed by a matching repository, but it is brand new with no demonstrated maintenance history. The repository has no security scanning or security policy, so validate it carefully before relying on it for payment processing.
65%
Total Score
50
100
81
90
This is the first release, published 0 days ago, so there is no release track record to demonstrate stability or responsive maintenance. Its newness explains the gap but does not remove the adoption risk.
The repository has 0 commits and 0 active maintainers in the last 3 months. Because the release is only 0 days old, this is an unproven maintenance history rather than evidence of a collapsed project.
The repository has 0 stars, forks, and watchers. This is consistent with a just-published package and is supporting evidence only, but it provides no external maturity signal yet.
Composer build tooling is present, but no security scanning tools are configured. For a package handling payment integrations, that is a meaningful transparency and maintenance gap.
The repository has no security policy. That leaves vulnerability reporting and response expectations unclear, which matters for payment-related software.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version ^7.5 | — | — |
illuminate/support Version ^10.0 || ^11.0 | — | — |
illuminate/contracts Version ^10.0 || ^11.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.