Usable with caveats: this is a small, clearly owned PHP coding-standard package with a linked, active repository and a documented v0.4.5 release. No registry release has appeared since May 2025, and recent repository activity is absent, so verify it still meets your coding-standard needs before adopting it.
72%
Total Score
83
100
81
83
The package has existed since June 2020 with 18 releases, but it has had no release in roughly 15 months. That slows confidence in ongoing maintenance for a dependency, although the long history provides some maturity evidence.
The repository recorded zero commits and zero active maintainers in the last three months. The recent push date is a compensating sign, but current development activity is still thin.
The repository has zero stars and one fork, showing limited public adoption. Popularity is only supporting evidence, so this modestly reduces confidence but does not make a small specialized coding-standard package unsafe to use.
Composer build tooling is present, but no security-scanning tooling was detected. For a small ruleset package this is a modest hygiene gap rather than a severe maintenance concern.
The repository has no security policy. This weakens transparency for reporting issues, though the package is a development-time coding standard with a small artifact.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
slevomat/coding-standard Version ^8.0 | — | — |
squizlabs/php_codesniffer Version ^3.12.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.