Package Health

cwerner1/phpqatools

The package has a clear README, an MIT declaration, and no install-time scripts. Its dependency bundle and source activity have not kept pace, leaving maintenance and tool compatibility concerns for a development dependency.

Latest 6.0.0PackagistPackagist

48%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Dependencies
Dependencies
Evaluates the health and security of package dependencies

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

81

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Release historydanger

The package has had no release in more than four years and none in the last 12 months, which is a substantial maintenance concern for a bundle of development tools.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last three months, consistent with an inactive project and elevated abandonment risk.

Dependency profilecaution

This meta-package bundles 13 runtime dependencies, including many separate QA tools; with no recent releases, that broad bundle increases the risk of stale or incompatible tooling.

Repo toolingcaution

Composer is used for builds, but no security scanning tool was detected. For a package that bundles security and quality tools, this is a transparency and maintenance gap.

Security policycaution

The repository has no security policy. This is a modest transparency gap, though it is less decisive for a development-only meta-package than the lack of maintenance activity.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Irvin Capagcuan

Direct Dependencies

DependencyLast ReleaseScore
phan/phan
Version *
—
—
behat/behat
Version *
—
—
phpmd/phpmd
Version *
—
—
phploc/phploc
Version *
—
—
pdepend/pdepend
Version *
—
—

Weekly Downloads

Info

Last Published
4 years ago
Created
13 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform