Package Health

coduo/php-matcher

PHP Matcher enables you to match values with patterns

Latest 6.0.18PackagistPackagist

70%

Total Score

caution

Usable with caveats: maintenance has recently slowed and CI workflow hygiene needs attention.

Health Score Breakdown

Lifecycle scriptscaution

Composer post-install and post-update scripts are present. They add installation-time behavior that consumers should understand, but this signal alone does not establish a health or abandonment problem.

Repo commit activitycaution

No commits and no active maintainers were recorded in the last three months. Although the recent release and repository push provide some counterevidence, this is a real sign that maintenance activity has slowed.

Security policycaution

The repository has no published security policy. This is a transparency gap for reporting vulnerabilities, though it does not by itself indicate abandonment.

Workflow auditcaution

All 14 analyzed action references are unpinned, and the audit found a high-confidence bot-conditions issue in the Dependabot auto-merge workflow. There are no untrusted checkouts or script-injection findings, limiting the severity to workflow hygiene concerns.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Michał Dąbrowski
Norbert Orzechowicz

Direct Dependencies

DependencyLast ReleaseScore
doctrine/lexer
Version ^3.0
—
—
aeon-php/calendar
Version ^1.0.6
—
—
coduo/php-to-string
Version ^3
—
—

Weekly Downloads

Info

Last Published
10 months ago
Created
12 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform