Stubs to let Psalm understand Doctrine better
67%
Total Score
caution
Usable with caveats: no commits in three months and all 11 workflow actions are unpinned.
The package has existed for 2,853 days with 39 releases, but only one release in the last 12 months. The release history shows maturity, while the recent cadence warrants caution.
The repository recorded zero commits and zero active maintainers over the past three months. A release on the latest collection date partly offsets this, but the observed coding activity remains thin.
There were no new or closed issues in the past month, although one pull request was merged and seven remain open. The limited recent activity is a mild maintenance concern.
No repository security policy was found. This is a transparency gap, though the repository does use Dependabot and Psalm as compensating security tooling.
The single workflow was fully analyzed with no dangerous triggers, untrusted checkouts, script injection, or audit findings. However, all 11 action references are unpinned, creating a supply-chain hygiene concern.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
vimeo/psalm Version ^6 | — | — |
composer/semver Version ^1.4 || ^2.0 || ^3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.