This is a focused, documented MIT package with a clear repository and minimal dependency surface. Its single maintainer and missing security policy reduce confidence in long-term support.
44%
Total Score
100
100
75
75
The package has only two releases, both in March 2018, and none in the last eight years. That is strong evidence of abandonment risk, although a stable coding-standard package may need few changes.
The repository is not archived, which avoids a definitive abandonment signal, but it was last pushed over eight years ago and does not offset the inactive release history.
The repository has no security policy. For a small development-tool package this is a modest transparency gap, but it leaves no documented channel or process for security concerns.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
squizlabs/php_codesniffer Version ~2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.