Package Health

phpstan/phpstan-mockery

Usable with caveats: the package is licensed, clearly backed by its organization, tested in the repository, and not deprecated or archived. However, the registry has had no release in nearly two years and repository activity shows no commits or merged pull requests in the last three months.

Latest 2.0.0PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

94

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

88

Health Score Breakdown

Release historycaution

The package has existed since 2018 with 28 releases, but it has had no registry release in nearly two years, which raises maintenance and compatibility concerns.

Repo commit activitycaution

No commits or active maintainers were recorded in the last three months, a meaningful maintenance concern despite the repository's recent push timestamp.

Repo issue activitycaution

There are open issues and pull requests, but none were opened, closed, or merged during the last month, indicating limited recent activity.

Token permissionscaution

No workflow declares top-level write permissions, and three declare read-only permissions; four omit a top-level permissions block, leaving some least-privilege settings implicit.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
phpstan/phpstan
Version ^2.0

Weekly Downloads

Info

Last Published
1 year ago
Created
8 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform