Documentation, tests, licensing, and package-to-repository alignment are in place. The project shows no recent maintenance or security-scanning evidence, so future compatibility support is uncertain.
58%
Total Score
75
88
75
The package has 23 releases since February 2019, but none in the last 12 months and its latest release was in March 2022. This indicates a long period without published maintenance.
There were no commits and no active maintainers in the last three months. Combined with no releases in more than four years, this is a meaningful maintenance and compatibility concern.
Composer build tooling is present, but no security-scanning tools were detected. The missing scanning reduces repository hygiene and transparency, though it is not evidence of malicious behavior.
The repository has no security policy. That leaves vulnerability-reporting and response expectations unclear for a package handling payment API integrations.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
psr/cache Version ^2.0.0 | — | — |
league/event Version ^2.0.0 | — | — |
php-http/httplug Version ^2.3.0 | — | — |
illuminate/support Version ^8.0|^9.0 | — | — |
php-http/discovery Version ^1.14.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.