The package has a clear README, a small dependency surface, and no install-time scripts. Its solo ownership, absent security policy, and more than four years without a release or commit add substantial maintenance risk.
35%
Total Score
25
100
71
83
The latest release was in August 2022, with no releases in the last 12 months and a package age of over four years. That is strong evidence of abandonment for a payment integration package.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long release gap and leaving no recent evidence of maintenance.
Only one registry maintainer is listed, which creates a thin publishing base for a package handling payment integrations. The repository is user-owned rather than organization-backed, so there is little shown redundancy.
The repository has one star, no forks, and one watcher, providing little independent evidence of adoption or community support. Low popularity is supporting evidence only, not decisive by itself.
Composer build tooling is present, but no security-scanning tools are reported. This is a modest hygiene gap rather than evidence of unsafe behavior by itself.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
illuminate/support Version ^6.0|^7.0|^8.0|^8.0|^9.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.