Healthy and suitable for use, with a small maintenance risk. It has frequent stable releases, active repository work, clear documentation, tests in the source repository, and organization backing, but all recent commits come from one contributor.
82%
Total Score
63
100
94
80
One contributor made 100% of the nine commits in the last three months, creating a real continuity risk. Organization backing partly compensates because maintenance can potentially be handed off internally, but no second active contributor is shown.
The repository recorded nine commits in the last three months, indicating active maintenance, but all activity came from one maintainer.
There are three new pull requests in the last month and five open pull requests, showing activity, but none were merged during that period, so review or integration capacity is not clearly demonstrated.
The repository has zero stars, forks, and watchers. This limits external validation and community evidence, although popularity is supporting evidence rather than a requirement for a small organization-owned tool.
No repository security policy was found. This is a transparency gap, though the package is a focused development tool and the repository does use Dependabot.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
friendsofphp/php-cs-fixer Version ^3.95 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.