Payment provider contracts: collect payments, read webhooks, read the merchant balance for bookkeeping
68%
Total Score
caution
A very new project with five same-day releases and no recent commit history, despite solid packaging and organization backing.
Five releases were published on the same day, with a median interval of about 2 hours 15 minutes. This shows active initial publishing but provides almost no long-term maintenance history.
The repository records zero commits and zero active maintainers over the last three months. Because the package is only hours old, this is primarily a lack of established history rather than proof of abandonment, but it limits confidence.
Composer build tooling is present, but no security-scanning tooling was detected. That is a modest transparency and maintenance gap, not a standalone reason to reject the package.
The repository has no security policy, leaving vulnerability reporting and disclosure expectations unspecified.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
wexample/symfony-remote Version >=2.0.0 | — | — |
wexample/symfony-helpers Version >=15.0.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.