The README, MIT license, repository tests, and release notes support practical adoption. The source remains available and the package is not deprecated, but its maintenance and workflow hygiene deserve scrutiny.
61%
Total Score
50
88
50
The package has 39 releases over roughly 9 years, but no releases in the last 12 months and its latest release was June 25, 2024. This is meaningful evidence of slowed maintenance.
There were no commits and no active maintainers in the last 3 months, reinforcing the release-history concern and indicating currently limited maintenance capacity.
No issues or pull requests were opened or closed in the last month, with three issues and one pull request still open. This is consistent with a quiet project and adds modest abandonment concern.
Composer is used for the build, but no security scanning tool was detected. The missing scanner is a transparency gap rather than evidence that the package is unsafe.
The repository has no security policy, leaving no documented process for reporting or handling vulnerabilities. This modestly reduces transparency for a package used in development workflows.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
nikic/php-parser Version ^3.1||^4.0||^5.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.