The package is small and easy to inspect, with a clear license and minimal runtime dependencies. Its missing README and security policy limit consumer guidance and assurance.
67%
Total Score
50
60
50
The artifact has no README, which matters for a library consumers must integrate, while the exact release includes GitHub release notes. Missing tests and changelog files are normal packaging practice and are not concerns here.
The repository had zero commits and zero active maintainers in the last three months, weakening evidence of current maintenance despite the recent release.
The repository has 1 star and 1 fork, providing little external evidence of community use or review; this is supporting evidence rather than a standalone health verdict.
Composer is used for the build, which fits the package, but no security scanning tools were detected, leaving dependency and release checks less transparent.
The repository has no security policy, leaving no documented process for reporting or handling vulnerabilities in a package that is used as a development dependency.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
squizlabs/php_codesniffer Version ^4.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.