It includes tests, an Apache-2.0 license, Composer build metadata, and organization-backed ownership. Its lack of security scanning and repository security policy leaves some transparency gaps for a dependency.
68%
Total Score
75
100
88
88
This is the package's first release, published 0 days ago, with only one release recorded, so there is no track record for maintenance or release reliability.
There were 0 commits and 0 active maintainers in the last 3 months. Because the repository was created 0 days ago, this is partly explained by its age, but it still provides no demonstrated maintenance capacity.
The repository uses Composer for builds, which fits the package ecosystem, but it reports no security scanning tooling, leaving automated security coverage unshown.
No repository security policy was found, so vulnerability reporting expectations are not documented; this is a transparency gap rather than evidence of a security defect.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
phpstan/phpdoc-parser Version ^2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.