Add junit report format to psalm
67%
Total Score
75
100
94
67
The package has 7 releases over about 6 years, but none in the last 12 months; this suggests slower maintenance and lowers confidence in receiving timely fixes.
There were no commits and no active maintainers in the last 3 months, although the repository was pushed more recently according to its archive-status data. This is a maintenance warning, not clear abandonment.
The repository has no published security policy. This is a transparency gap, though the package's testing and security-scanning tooling partly compensate for it.
The single workflow was fully analyzed with no dangerous triggers, untrusted checkouts, script injection, or audit findings. Its only use is unpinned, which is a minor reproducibility and supply-chain hygiene gap.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
vimeo/psalm Version ^4.4 || ^5.0 || ^6.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.