The package has tests, an Apache-2.0 license, organization backing, and no install-time scripts. Its small dependency surface and matching repository support adoption, but there is not yet enough history to establish durable maintenance.
62%
Total Score
75
100
86
75
This is a first-day package with one release and no established release cadence, so maintenance maturity cannot yet be demonstrated.
No commits or active maintainers were observed in the last three months. Because the repository itself is only a day old, this is limited evidence rather than proof of abandonment, but it leaves maintenance capacity unestablished.
Composer is used as the build tool, which fits this package, but no security-scanning tools were detected. The missing scanning is a modest hygiene gap rather than a severe dependency-health concern.
The repository has no security policy. For a small implementation package this is a transparency gap, but it is less consequential than the absence of maintenance history.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
pestphp/pest-plugin-arch Version 4.0.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.