# boltpay/bolt-magento2 3.0.0

> Version 3.0.0 of boltpay/bolt-magento2, released 2026-09-22.

`composer require boltpay/bolt-magento2:3.0.0`

Canonical URL: https://packagento.com/boltpay/bolt-magento2/3.0.0

## At a glance

- **Released**: 2026-09-22
- **Magento**: 100.*|101.*|102.*|103.*
- **QA**: failing

## What it does

Bolt payment gateway integration

## Dependencies

### Require

| Package | Constraint |
|---|---|
| bugsnag/bugsnag | ^3.4 |
| magento/framework | 100.*\|101.*\|102.*\|103.* |
| magento/module-checkout | 100.*\|101.*\|102.*\|103.* |
| magento/module-payment | 100.*\|101.*\|102.*\|103.* |
| magento/module-sales | 100.*\|101.*\|102.*\|103.* |
| magento/module-tax | 100.*\|101.*\|102.*\|103.* |

### Require (dev)

| Package | Constraint |
|---|---|
| magento/magento-coding-standard | ^5.0 |
| mikey179/vfsstream | ^1.6 |
| phpunit/phpunit | ~6.2.0 |

## Quality

Version 3.0.0 fails the Packagento QA pipeline. Verdicts below are per-cell (Magento line × PHP version) for the matrixed tools, and run-once for the static / security tiers.


### Compatibility

Each Magento line is installed on its supported PHP versions, then the module is built (DI compile + static-content deploy). Cells show passed / failed / untested; staircase gaps render as `–`.

| Magento | PHP 8.2 | PHP 8.3 | PHP 8.4 | PHP 8.5 |
|---|---|---|---|---|
| 2.4.7 | Pass | Pass | – | – |
| 2.4.8 | – | Pass | Pass | – |
| 2.4.9 | – | – | Pass | Pass |


### Code Quality

Advisory checks against the module's source. Never affect the Compatibility verdict — a phpcs finding can't make a module incompatible.

#### Static Analysis

Coding standards (phpcs), mess detection (phpmd), copy-pasted code (cpd), PHP cross-version compatibility, composer.json validity. Each runs once for the whole module.

| Tool | Status | Findings | Summary |
|---|---|---|---|
| PHPCS | Fail | 4584 | 51 errors, 4533 warnings (ruleset: Magento2), 861 auto-fixable with phpcbf |
| PHPMD | Warning | 858 | 858 rule violations (UnusedFormalParameter:221, MissingImport:200, IfStatementAssignment:112, UnusedLocalVariable:51, ExcessiveMethodLength:49) |
| Cpd | Warning | 132 | 132 duplicated chunks spanning 3968 total lines (min-lines=5, min-tokens=70) |
| Composer validate | Info | 1 | valid; 1 advisory note (composer validate --strict) |

#### PHPStan

Type-checks the module against a real Magento install. Re-runs per Magento + PHP version because resolvable symbols differ between releases.

| Magento | PHP 8.2 | PHP 8.3 | PHP 8.4 | PHP 8.5 |
|---|---|---|---|---|
| 2.4.7 | 3 | 37 | – | – |
| 2.4.8 | – | 37 | 37 | – |
| 2.4.9 | – | – | 37 | 37 |


### Tests

Unit and integration suites run per Magento + PHP cell. Test failures speak to the module's behaviour, not its compatibility with a line, so they're reported here separately.

#### Unit Tests

| Magento | PHP 8.2 | PHP 8.3 | PHP 8.4 | PHP 8.5 |
|---|---|---|---|---|
| 2.4.7 | Pass | Pass | – | – |
| 2.4.8 | – | Pass | Pass | – |
| 2.4.9 | – | – | Pass | Pass |

#### Integration Tests

| Magento | PHP 8.2 | PHP 8.3 | PHP 8.4 | PHP 8.5 |
|---|---|---|---|---|
| 2.4.7 | N/A | N/A | – | – |
| 2.4.8 | – | N/A | N/A | – |
| 2.4.9 | – | – | N/A | N/A |


### Security

Dependency-advisory audit (composer audit) plus a source malware scan. A malware detection fails the version outright.

| Tool | Status | Findings | Summary |
|---|---|---|---|
| Composer audit | N/A | 0 | no resolvable dependency tree to audit: Your requirements could not be resolved to an installable set of packages. Problem 1 |
| Malware scan | Pass | 0 |  |

## Parent package

[boltpay/bolt-magento2](https://packagento.com/boltpay/bolt-magento2.md) — full catalogue, pricing, install steps, and vendor info.

