Package Health

phing/task-analyzers

The package is clearly tied to the Phing organization, with a matching repository and a stable release. Its very small footprint and limited recent activity make long-term maintenance less certain.

Latest 3.1.2PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

94

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Repo commit activitycaution

The repository recorded zero commits and zero active maintainers in the last three months. Although the release was recent, this lack of observed development activity lowers confidence in continued maintenance.

Repo issue activitycaution

There were no new or merged pull requests in the last month and no recorded issue activity; the zero open pull requests are not itself negative. Combined with absent recent commits, this provides little evidence of active community maintenance.

Repo popularitycaution

The repository has only 1 star and 1 fork, indicating a very small public user and contributor footprint. This is supporting evidence of limited community depth, while the organization backing partly offsets it.

Security policycaution

No security policy is present in the repository. This is a transparency and response-process gap, though it is moderated by the reported Sonar scanning and does not alone make the release unfit.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Siad Ardroumli

Direct Dependencies

DependencyLast ReleaseScore
phpmd/phpmd
Version ^2.14
—
—
phploc/phploc
Version ^7.0
—
—
pdepend/pdepend
Version ^2.9
—
—
phpstan/phpstan
Version ^2.1
—
—
sebastian/phpcpd
Version ^6.0
—
—

Weekly Downloads

Info

Last Published
9 months ago
Created
3 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform