The small dependency set, clear README, GPL-2.0 license, and lack of install-time scripts reduce adoption friction. Its mature stable version has not received a release or repository commit since August 2017, and the project has no security policy or scanning.
48%
Total Score
0
100
67
75
The package has had no release in over 9 years, with zero releases in the last 12 months; four historical releases show some maturity but do not offset the prolonged inactivity.
The repository recorded zero commits and zero active maintainers in the last 3 months, consistent with the long release gap and indicating substantial abandonment risk.
Composer is used for the build, but no security scanning tools are configured, leaving an avoidable maintenance and dependency-monitoring gap.
The repository is not archived, which preserves a path for maintenance, but its last push was in August 2017 and does not compensate for the absence of recent activity.
No repository security policy was found, leaving vulnerability-reporting expectations and response guidance undocumented for a payment-related library.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/options-resolver Version ~2.8|~3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.