Git hooks for PHP projects.
40%
Total Score
unhealthy
Risky: no releases or repository commits since January 2017, indicating probable abandonment.
The package has had no releases in the last 12 months, and its latest release was about 9 years ago. This is strong evidence of abandonment risk despite 39 historical releases.
The repository recorded 0 commits and 0 active maintainers over the last 3 months, consistent with the long release gap and offering no evidence of current maintenance.
The package declares 18 runtime dependencies, including several testing and code-quality tools, creating a broad and potentially stale dependency surface for a Git-hook library.
The package uses post-install and post-update scripts, which is relevant for a Git-hook package and may be intentional, but it increases installation behavior that consumers must account for.
The repository uses Composer for builds, but no security scanning tool was detected. That is a modest transparency and maintenance gap, not evidence that the release is unsafe on its own.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
phpmd/phpmd Version ~2.2 | — | — |
symfony/yaml Version ~2.7|~3.0 | — | — |
seld/jsonlint Version 1.3.* | — | — |
symfony/config Version ~2.7|~3.0 | — | — |
beberlei/assert Version ^2.5 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.