Package Health

net-os/php-linting-rules

The repository is clearly tied to the package and backed by an organization, with a useful README and changelog. Its dependency bundle is expected for a linting preset, but the project has no security policy or automated security scanning.

Latest 1.0.0PackagistPackagist

62%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

89

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Release historycaution

This is a new package, only 94 days old, with one release and no established release cadence. That limits evidence of long-term maintenance.

Repo bus factorcaution

One contributor made 100% of the two recent commits. Organization backing partly offsets the concentration, but maintenance still depends on a single observed contributor.

Repo commit activitycaution

Only two commits were recorded in the last three months, with activity from one maintainer. This provides limited evidence of ongoing maintenance.

Repo toolingcaution

The repository uses Composer, but no security-scanning tools were detected. For a package that distributes configuration and tooling dependencies, this is a modest transparency gap.

Security policycaution

No security policy was found in the repository. This is a maintenance and reporting gap, though the package is a development-time linting bundle rather than a runtime service.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Mike Meijer
Thimon Wentink

Direct Dependencies

DependencyLast ReleaseScore
phpmd/phpmd
Version ^3.x-dev
—
—
mockery/mockery
Version ^1.6
—
—
tightenco/tlint
Version ^9.5
—
—
larastan/larastan
Version ^3.0
—
—
phpstan/phpstan-mockery
Version ^2.0
—
—

Weekly Downloads

Info

Last Published
3 months ago
Created
3 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform