Its clear README, matching repository, and BSD-3-Clause license support straightforward use. The package is narrowly scoped, but ongoing maintenance and security oversight remain limited.
58%
Total Score
75
100
83
88
The package has had no registry release for over seven years, despite four releases in its first two weeks. That long gap raises maintenance and compatibility concerns.
There were zero commits and zero active maintainers in the last three months. This is meaningful evidence of limited ongoing maintenance, even though the repository is not archived.
The repository has zero stars and only one fork, indicating limited public adoption. Popularity is supporting evidence rather than a decisive health measure for this small package.
Composer is used for project tooling, but no security-scanning tool was detected. The missing scanner is a modest transparency and oversight gap.
The repository has no security policy, leaving no documented process for reporting or handling security issues.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
squizlabs/php_codesniffer Version ^3.4.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.