A meta composer package for install PHP Static Code Analysis Tools.
35%
Total Score
unhealthy
Risky: a single release from over 10 years ago leaves maintenance and compatibility uncertain.
This is the package's only release, published over 10 years ago, with no releases in the last 12 months. That strongly raises abandonment and compatibility risk.
The repository recorded no commits or active maintainers in the last three months, consistent with a project that has been inactive since 2016.
Composer is used for the build, but no security-scanning tooling is present. For a package bundling security and code-quality tools, this is a modest transparency gap.
The repository has no security policy, leaving no documented process for reporting or handling vulnerabilities. This is a hygiene concern for a package centered on development and security tooling.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
phpmd/phpmd Version ~2.0 | — | — |
phploc/phploc Version ~2.0 | — | — |
sstalle/php7cc Version ~1.0 | — | — |
pdepend/pdepend Version ~2.0 | — | — |
sebastian/phpcpd Version ~2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.