It has an MIT license, a usable README, and no install-time scripts. The package is abandoned, with no release activity for nearly ten years and an archived source repository. Its dependency bundle is also dated and broad, increasing maintenance risk.
12%
Total Score
0
50
40
Packagist marks the entire package as abandoned, with no replacement provided. This is a direct warning against taking a new dependency on it.
The latest release was published nearly ten years ago, and there were no releases in the last 12 months. This strongly indicates the package is no longer maintained.
The repository recorded no commits and no active maintainers in the last three months, consistent with its archived status and long release gap.
The linked repository is archived and was last pushed nearly six years ago, so ongoing maintenance should not be expected.
This metapackage pulls 14 runtime dependencies, including a large collection of QA tools. That broad dependency surface makes its long-term compatibility and maintenance burden higher.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
twig/twig Version >1.20.0 | — | — |
behat/behat Version @stable | — | — |
phpmd/phpmd Version @stable | — | — |
phploc/phploc Version @stable | — | — |
phpunit/dbunit Version @stable | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.