Standard MediaWiki phan configuration
82%
Total Score
100
100
88
75
The repository name does not match the package name and its README does not mention the package, so the package-to-repository relationship is less transparent. The Wikimedia organization provides some context, but does not remove this concrete linkage gap.
Composer is used as a build tool, supporting reproducible project packaging. No security scanning tool was detected, leaving a modest repository hygiene gap.
The repository has no security policy. This is a transparency gap for reporting vulnerabilities, although active organizational backing and ongoing commits partly reduce the concern.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
phan/phan Version 6.0.2 | — | — |
mediawiki/phan-taint-check-plugin Version 9.1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.