Its small artifact fits a development-only Composer package, and the MIT license is clearly included. Security policy is present, with no install-time scripts or workflow audit findings.
82%
Total Score
67
100
94
100
One contributor made all 3 commits in the last 3 months, concentrating recent activity; the organization-owned project provides some handoff capacity, so this is a limited concern rather than a severe risk.
The repository recorded 3 commits in the last 3 months, showing recent activity but a relatively light maintenance pace.
Composer is used for builds, but no security-scanning tools were detected; the missing scanning is a modest transparency gap, not evidence of abandonment.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
laravel/pint Version ^1.29.3 | — | — |
rector/rector Version ^2.5.7 | — | — |
phpstan/phpstan Version ^2.2.5 | — | — |
phpunit/phpunit Version ^13.2.4 | — | — |
symfony/var-dumper Version ^8.1.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.