A Pest 5 plugin for executable behaviour specifications.
58%
Total Score
caution
A one-day-old package with 11 rapid releases and all recent commits from one maintainer is promising but not yet proven.
The repository is owned by an individual account rather than an organization, so the single-contributor concentration is not offset by visible organizational handoff capacity.
The package is only 1 day old and has already made 11 releases, with releases arriving on the same day. This shows active development but provides little evidence of sustained release discipline or long-term maintenance.
One contributor made 100% of the 15 recent commits. That concentration creates a meaningful continuity risk for a package with no organizational backing shown.
The repository has no security policy. For a new library this is a transparency and vulnerability-reporting gap, though it is not by itself evidence of unsafe code.
Version v0.8.0 is not a prerelease, but the 0.x major version indicates an early, still-evolving API. The absence of recent prereleases is a modest positive, not enough to offset the project's youth.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
pestphp/pest Version ^5.0.0 | — | — |
pestphp/pest-plugin Version ^5.0.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.