The package is clearly licensed, documented, and free of install-time scripts, with a small, focused dependency set. Future compatibility fixes may depend on you rather than an active maintainer.
58%
Total Score
25
100
78
83
There were no commits and no active maintainers in the last three months. Combined with the old last-push date, this is strong evidence that maintenance has effectively stopped.
The package and repository are owned by the same individual account, which supports identity alignment but does not provide organizational backing or a broad succession path.
The package has had only four releases, with none in the last 12 months; its latest recorded release was about four years and ten months ago. This indicates substantial staleness for a package that may need updates as tooling evolves.
The repository has one star and one fork, providing little evidence of broad community support or a backup maintainer base. Low popularity is supporting evidence only, but it leaves the project with few visible adoption signals.
The repository uses Composer for builds, which fits the package ecosystem, but no security-scanning tools were detected. The missing scanner is a hygiene gap rather than evidence of an unsafe release.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
squizlabs/php_codesniffer Version ^3.6 | — | — |
dealerdirect/phpcodesniffer-composer-installer Version ^0.7 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.