The package has a clear README, release notes, a matching repository, and a small dependency set. Its lack of tests and security policy leaves less evidence for dependable long-term maintenance.
52%
Total Score
50
100
75
50
Only two releases exist, both in October 2022, with no release in nearly four years. This is strong evidence of a stagnant release line despite the package not being deprecated.
The repository recorded no commits and no active maintainers in the last three months, reinforcing the long release gap and raising maintenance risk.
Three stars, one fork, and one watcher show a very small user and reviewer base. Low popularity is only supporting evidence, but it provides little external validation or maintenance pressure.
The repository has no security policy, leaving no documented route for reporting vulnerabilities or describing security handling. This is a transparency gap for a package that processes payment integrations.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
guzzlehttp/guzzle Version >=6.0 | — | — |
laravel/framework Version >=5.6 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.