It has an MIT license, a matching organization-owned repository, and no install-time scripts. The small ruleset includes a usable README and has only two runtime dependencies. Treat it as a maintenance-sensitive choice rather than a dependable actively maintained foundation.
58%
Total Score
75
100
79
75
The package has 18 releases since February 2017, but no release in more than six years; that materially raises maintenance and freshness risk.
There were no commits and no active maintainers in the three months measured, which weakens evidence of ongoing maintenance despite the repository not being archived.
Composer is used for the build, but no security-scanning tooling was detected; this is a modest transparency and hygiene gap for a published dependency.
The repository has no security policy. This is a limited disclosure-process gap, not evidence that the package is unsafe.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
cakephp/cakephp-codesniffer Version ^4.0.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.