Package Health

pronamic/wp-coding-standards

Usable with caveats: it is licensed, stable, documented, tested, and backed by a non-archived organization repository. Maintenance has gone quiet since the January release, and the repository README does not explicitly mention the package.

Latest v2.5.0PackagistPackagist

74%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

81

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historycaution

The package has existed since June 2021 with 13 releases, but only one release appeared in the last 12 months, indicating a slow maintenance cadence.

Repo commit activitycaution

There were no commits and no active maintainers in the three months measured; the recent release partly compensates, but the lack of ongoing activity raises abandonment risk.

Repo package mentioncaution

The repository name matches the package, but its README does not mention the package explicitly, leaving a small transparency gap about the artifact-to-repository link.

Repo toolingcaution

Composer build tooling is present, but no security-scanning tool was detected; this is a modest supply-chain hygiene gap rather than evidence the release is unsafe.

Security policycaution

No security policy was found. This is a transparency gap, although the package is a coding-standards configuration rather than a service handling application data.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Pronamic
Remco Tolsma

Direct Dependencies

DependencyLast ReleaseScore
automattic/vipwpcs
Version ^3.0
—
—
wp-coding-standards/wpcs
Version ^3.3
—
—
squizlabs/php_codesniffer
Version ^3.13
—
—
sirbrillig/phpcs-variable-analysis
Version ^2.13
—
—
phpcompatibility/phpcompatibility-wp
Version ^2.1
—
—

Weekly Downloads

Info

Last Published
8 months ago
Created
5 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform