PHPUnit Fluent interface and Custom assertions
72%
Total Score
50
94
75
The package defines post-install-cmd and post-update-cmd scripts, so dependency installation or updates can execute package-defined commands and require additional review.
The repository is owned by an individual user rather than an organization, so the one-person maintenance concentration is not compensated by visible organizational backing.
All five recent commits came from one contributor, with a 100% top-contributor share and one contributor overall; this creates a meaningful single-maintainer continuity risk.
The repository recorded five commits in the last three months, showing current activity, but only one active maintainer contributed them, limiting resilience if that maintainer becomes unavailable.
Composer is used as a build tool, but no security scanning tools are detected. The build setup is present, while the absence of scanning reduces security-process transparency.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
phpunit/phpunit Version 9.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.