Raw JSON report machine-readable
{
"data": {
"icon": {
"bytes": 16168,
"width": 256,
"height": 256,
"rejected": [],
"collected": true,
"media_type": "image/jpeg",
"source_url": "https://avatars.githubusercontent.com/u/188960?v=4&s=256",
"source_type": "avatar",
"content_hash": "db4d65300f93d92f221a3df46bd94721cb65243cf95c50e81270bb537dd78aa0",
"candidates_considered": 1
},
"repo": {
"topics": [
"php",
"semver",
"inspection",
"ruleset",
"analyzer"
],
"is_fork": false,
"size_kb": 407,
"has_wiki": false,
"homepage": null,
"languages": {
"PHP": 165127
},
"pushed_at": "2026-02-05T06:59:48Z",
"created_at": "2015-01-09T14:10:36Z",
"owner_type": "User",
"updated_at": "2026-07-06T10:18:45Z",
"description": "Compares two source sets and determines the appropriate semantic versioning to apply.",
"is_archived": false,
"is_disabled": false,
"license_spdx": "MIT",
"default_branch": "master",
"license_spdx_raw": "MIT",
"primary_language": "PHP",
"significant_languages": [
"PHP"
]
},
"owner": {
"blog": "https://blog.tomrochette.com",
"name": "Tom Rochette",
"type": "User",
"login": "tomzx",
"company": null,
"location": "Montreal",
"followers": 122,
"avatar_url": "https://avatars.githubusercontent.com/u/188960?v=4",
"created_at": "2010-01-24T19:20:59Z",
"is_verified": null,
"public_repos": 101,
"account_age_days": 6036
},
"license": {
"state": "standard",
"spdx_id": "MIT",
"raw_spdx": "MIT",
"file_present": true,
"scorecard_found": true,
"profile_has_license": true
},
"activity": {
"releases": [
{
"tag": "v0.17.0",
"kind": "minor",
"published_at": "2025-10-30T07:05:19Z"
},
{
"tag": "v0.16.0",
"kind": "minor",
"published_at": "2025-11-01T03:46:06Z"
},
{
"tag": "v0.15.1",
"kind": "patch",
"published_at": "2021-12-31T20:28:40Z"
},
{
"tag": "v0.15.0",
"kind": "minor",
"published_at": "2021-12-31T20:28:03Z"
},
{
"tag": "v0.14.0",
"kind": "minor",
"published_at": "2020-04-17T04:37:52Z"
},
{
"tag": "v0.13.0",
"kind": "minor",
"published_at": "2019-03-09T19:03:48Z"
},
{
"tag": "v0.12.1",
"kind": "patch",
"published_at": "2018-02-24T20:42:37Z"
},
{
"tag": "v0.12.0",
"kind": "minor",
"published_at": "2018-02-08T22:05:53Z"
},
{
"tag": "v0.11.0",
"kind": "minor",
"published_at": "2017-12-09T22:07:37Z"
},
{
"tag": "v0.10.0",
"kind": "minor",
"published_at": "2016-05-14T02:08:42Z"
},
{
"tag": "v0.9.1",
"kind": "patch",
"published_at": "2016-05-14T02:08:31Z"
},
{
"tag": "v0.9.0",
"kind": "minor",
"published_at": "2016-05-14T02:08:12Z"
},
{
"tag": "v0.8.1",
"kind": "patch",
"published_at": "2016-05-14T02:07:59Z"
},
{
"tag": "v0.8.0",
"kind": "minor",
"published_at": "2016-05-14T02:07:47Z"
},
{
"tag": "v0.7.0",
"kind": "minor",
"published_at": "2016-01-23T06:29:36Z"
},
{
"tag": "v0.6.3",
"kind": "patch",
"published_at": "2015-06-18T12:15:24Z"
},
{
"tag": "v0.6.2",
"kind": "patch",
"published_at": "2015-06-18T11:57:37Z"
},
{
"tag": "v0.6.1",
"kind": "patch",
"published_at": "2015-06-18T11:57:22Z"
},
{
"tag": "v0.6.0",
"kind": "minor",
"published_at": "2015-06-18T11:56:44Z"
},
{
"tag": "v0.5.0",
"kind": "minor",
"published_at": "2015-05-02T21:22:59Z"
},
{
"tag": "v0.4.1",
"kind": "patch",
"published_at": "2015-01-16T04:53:55Z"
},
{
"tag": "v0.4.0",
"kind": "minor",
"published_at": "2015-01-16T04:33:12Z"
},
{
"tag": "v0.3.0",
"kind": "minor",
"published_at": "2015-01-16T04:16:54Z"
},
{
"tag": "v0.2.0",
"kind": "minor",
"published_at": "2015-01-15T00:51:27Z"
},
{
"tag": "v0.1.0",
"kind": "minor",
"published_at": "2015-01-15T00:26:51Z"
}
],
"recent_commits": [
{
"oid": "8578ed0cf7916327943421f8516b7913efe18cbc",
"body": null,
"is_bot": false,
"headline": "Add PHP 8.5 to CI workflow matrix",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2026-02-05T06:59:48Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "65ad228e89ea9c95c4b1eb41e6c73ad4422df641",
"body": null,
"is_bot": false,
"headline": "Bump composer branch-alias to 0.18-dev",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2025-10-30T07:04:39Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "bb44fc9d06a61a66a851040d4ca6524540f3798c",
"body": null,
"is_bot": false,
"headline": "Changelog for v0.17.0",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2025-10-30T07:02:48Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "40cb4fe9939501797fbfd4e27c5efab1cf03721a",
"body": null,
"is_bot": false,
"headline": "Build .phar with GitHub Actions",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2025-10-30T06:56:36Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "2399a35e60a835f860c2a2b48e03bfe0e2d5122c",
"body": "The server it relies on is currently down and cannot be depended on for the foreseeable future.",
"is_bot": false,
"headline": "Disable semantic versioning evaluation",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2025-10-30T06:01:28Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "8c11fb31a954c749c0ba4effce76817f06409c3e",
"body": null,
"is_bot": false,
"headline": "Bump nikic/php-parser minimum to 5.2 to support PHP 8.4",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2025-10-30T05:53:02Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "5a0589b31b422ad983f431ac71d919d845c3e230",
"body": "Add tests for PHP 7.3, 7.4, 8.0, 8.1, 8.2, 8.3, 8.4",
"is_bot": false,
"headline": "Fix tests",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2025-10-30T05:46:28Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d6424fe3d2e58b4f663f0c3ca043dd21d87f2d7d",
"body": "Test PHP 8.3 and 8.4",
"is_bot": false,
"headline": "Update minimum PHP to 8.1 to follow LTS",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2025-10-30T05:32:00Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "9d2da70d56f4a2a4b5d1fd0d6d740df864925a29",
"body": "Add PHP 8.2 to CI check.",
"is_bot": false,
"headline": "Remove PHP 7.3/7.4 from CI check",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2023-06-19T02:23:33Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "fd335949408cf60f93107ba491c1b2296aff6ead",
"body": null,
"is_bot": false,
"headline": "Bump composer branch-alias to 0.17-dev",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2023-06-19T02:21:41Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "6ee8efaf839695054c14f1f77c86d5dae2a099cb",
"body": null,
"is_bot": false,
"headline": "Changelog for v0.16.0",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2023-06-19T02:21:01Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d572c0f79017ed82a087c0d6ae600115e09e4558",
"body": null,
"is_bot": false,
"headline": "Add support for union type comparison",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2023-06-19T02:20:31Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "3fe685a4cac08793e32d578b746a2b74062c9864",
"body": "Update symfony/console and symfony/yaml to ^6.0.",
"is_bot": false,
"headline": "Bump minimum PHP version to ^8.0",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2023-06-19T01:57:11Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "cd4c19afb51bc0d5cd298f62cab0cb6c921c1f0c",
"body": null,
"is_bot": false,
"headline": "Use strict typing",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2023-06-19T01:52:14Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "02dbf2cd69825f94c792de508dd8090429a58b7c",
"body": null,
"is_bot": false,
"headline": "Add typing",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2023-06-19T01:52:14Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "616ec19c746db215b913c84495192c7f4f654284",
"body": "Bumps [symfony/yaml](https://github.com/symfony/yaml) from 5.4.16 to 5.4.17.\r\n- [Release notes](https://github.com/symfony/yaml/releases)\r\n- [Changelog](https://github.com/symfony/yaml/blob/6.2/CHANGELOG.md)\r\n- [Commits](https://github.com/symfony/yaml/compare/v5.4.16...v5.4.17)\r\n\r\n---\r\nupdated-depe\n[…]\n\r\n...\r\n\r\nSigned-off-by: dependabot[bot] <support@github.com>\r\n\r\nSigned-off-by: dependabot[bot] <support@github.com>\r\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "Bump symfony/yaml from 5.4.16 to 5.4.17 (#166)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2023-01-09T01:27:48Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "28e60f28b46174d81adebc839aa29a01ff45610c",
"body": "Bumps [symfony/console](https://github.com/symfony/console) from 5.4.16 to 5.4.17.\r\n- [Release notes](https://github.com/symfony/console/releases)\r\n- [Changelog](https://github.com/symfony/console/blob/6.2/CHANGELOG.md)\r\n- [Commits](https://github.com/symfony/console/compare/v5.4.16...v5.4.17)\r\n\r\n--\n[…]\n\r\n...\r\n\r\nSigned-off-by: dependabot[bot] <support@github.com>\r\n\r\nSigned-off-by: dependabot[bot] <support@github.com>\r\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "Bump symfony/console from 5.4.16 to 5.4.17 (#165)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2023-01-09T01:27:41Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "887302f3523ce72707648323325a2cd2f2219227",
"body": null,
"is_bot": false,
"headline": "Bump actions/checkout to v3 (#163)",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2022-12-28T16:53:44Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "f2ac07364d3b22e2edceef3c0ec1ad8cc2cec7ed",
"body": "Bumps [mockery/mockery](https://github.com/mockery/mockery) from 1.5.0 to 1.5.1.\r\n- [Release notes](https://github.com/mockery/mockery/releases)\r\n- [Changelog](https://github.com/mockery/mockery/blob/master/CHANGELOG.md)\r\n- [Commits](https://github.com/mockery/mockery/compare/1.5.0...1.5.1)\r\n\r\n---\r\n\n[…]\n\r\n...\r\n\r\nSigned-off-by: dependabot[bot] <support@github.com>\r\n\r\nSigned-off-by: dependabot[bot] <support@github.com>\r\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "Bump mockery/mockery from 1.5.0 to 1.5.1 (#158)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2022-12-28T16:28:47Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "df1b1e8cd5ee368f850c1bc1e7ec76eac334245a",
"body": "Bumps [symfony/console](https://github.com/symfony/console) from 5.4.15 to 5.4.16.\r\n- [Release notes](https://github.com/symfony/console/releases)\r\n- [Changelog](https://github.com/symfony/console/blob/6.1/CHANGELOG.md)\r\n- [Commits](https://github.com/symfony/console/compare/v5.4.15...v5.4.16)\r\n\r\n--\n[…]\n\r\n...\r\n\r\nSigned-off-by: dependabot[bot] <support@github.com>\r\n\r\nSigned-off-by: dependabot[bot] <support@github.com>\r\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "Bump symfony/console from 5.4.15 to 5.4.16 (#160)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2022-12-28T16:28:18Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "ecb1a0bafbaadb59e774ee2afabba12bee90f64a",
"body": "Bumps [symfony/yaml](https://github.com/symfony/yaml) from 5.4.14 to 5.4.16.\r\n- [Release notes](https://github.com/symfony/yaml/releases)\r\n- [Changelog](https://github.com/symfony/yaml/blob/6.1/CHANGELOG.md)\r\n- [Commits](https://github.com/symfony/yaml/compare/v5.4.14...v5.4.16)\r\n\r\n---\r\nupdated-depe\n[…]\n\r\n...\r\n\r\nSigned-off-by: dependabot[bot] <support@github.com>\r\n\r\nSigned-off-by: dependabot[bot] <support@github.com>\r\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "Bump symfony/yaml from 5.4.14 to 5.4.16 (#161)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2022-12-28T16:28:07Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "12f408bed7db38501bedf66d5af7e52bff4ca728",
"body": "Bumps [phpunit/phpunit](https://github.com/sebastianbergmann/phpunit) from 9.5.26 to 9.5.27.\r\n- [Release notes](https://github.com/sebastianbergmann/phpunit/releases)\r\n- [Changelog](https://github.com/sebastianbergmann/phpunit/blob/main/ChangeLog-9.5.md)\r\n- [Commits](https://github.com/sebastianberg\n[…]\n\r\n...\r\n\r\nSigned-off-by: dependabot[bot] <support@github.com>\r\n\r\nSigned-off-by: dependabot[bot] <support@github.com>\r\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "Bump phpunit/phpunit from 9.5.26 to 9.5.27 (#162)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2022-12-28T16:27:57Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "52091483c05ab085c6221b11176b23e8dacd936a",
"body": "Bumps [phpunit/phpunit](https://github.com/sebastianbergmann/phpunit) from 9.5.19 to 9.5.26.\r\n- [Release notes](https://github.com/sebastianbergmann/phpunit/releases)\r\n- [Changelog](https://github.com/sebastianbergmann/phpunit/blob/main/ChangeLog-9.5.md)\r\n- [Commits](https://github.com/sebastianberg\n[…]\n\r\n...\r\n\r\nSigned-off-by: dependabot[bot] <support@github.com>\r\n\r\nSigned-off-by: dependabot[bot] <support@github.com>\r\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "Bump phpunit/phpunit from 9.5.19 to 9.5.26 (#156)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2022-11-12T17:41:13Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "f9d6154364fc8aeb1ba74ae94aab5efea2670bb9",
"body": "Bumps [symfony/console](https://github.com/symfony/console) from 5.4.5 to 5.4.15.\r\n- [Release notes](https://github.com/symfony/console/releases)\r\n- [Changelog](https://github.com/symfony/console/blob/6.1/CHANGELOG.md)\r\n- [Commits](https://github.com/symfony/console/compare/v5.4.5...v5.4.15)\r\n\r\n---\r\n[…]\n\r\n...\r\n\r\nSigned-off-by: dependabot[bot] <support@github.com>\r\n\r\nSigned-off-by: dependabot[bot] <support@github.com>\r\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "Bump symfony/console from 5.4.5 to 5.4.15 (#155)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2022-11-12T17:40:43Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "1c9af74c3ea38e9e93eed73cc69f36f59ba1e6ed",
"body": "Bumps [symfony/yaml](https://github.com/symfony/yaml) from 5.4.3 to 5.4.14.\r\n- [Release notes](https://github.com/symfony/yaml/releases)\r\n- [Changelog](https://github.com/symfony/yaml/blob/6.1/CHANGELOG.md)\r\n- [Commits](https://github.com/symfony/yaml/compare/v5.4.3...v5.4.14)\r\n\r\n---\r\nupdated-depend\n[…]\n\r\n...\r\n\r\nSigned-off-by: dependabot[bot] <support@github.com>\r\n\r\nSigned-off-by: dependabot[bot] <support@github.com>\r\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "Bump symfony/yaml from 5.4.3 to 5.4.14 (#154)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2022-11-12T17:40:25Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "12ba0413caca1eb4454da9bf3ca04b2c8c769841",
"body": "Bumps [nikic/php-parser](https://github.com/nikic/PHP-Parser) from 4.13.2 to 4.15.1.\r\n- [Release notes](https://github.com/nikic/PHP-Parser/releases)\r\n- [Changelog](https://github.com/nikic/PHP-Parser/blob/master/CHANGELOG.md)\r\n- [Commits](https://github.com/nikic/PHP-Parser/compare/v4.13.2...v4.15.\n[…]\n\r\n...\r\n\r\nSigned-off-by: dependabot[bot] <support@github.com>\r\n\r\nSigned-off-by: dependabot[bot] <support@github.com>\r\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "Bump nikic/php-parser from 4.13.2 to 4.15.1 (#150)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2022-11-12T17:40:06Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "99dce1aca4082bb8918c16f475bf186e2d57ee2e",
"body": "Bumps [hassankhan/config](https://github.com/hassankhan/config) from 3.0.0 to 3.0.1.\r\n- [Release notes](https://github.com/hassankhan/config/releases)\r\n- [Changelog](https://github.com/hassankhan/config/blob/develop/CHANGELOG.md)\r\n- [Commits](https://github.com/hassankhan/config/compare/3.0.0...3.0.\n[…]\n\r\n...\r\n\r\nSigned-off-by: dependabot[bot] <support@github.com>\r\n\r\nSigned-off-by: dependabot[bot] <support@github.com>\r\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "Bump hassankhan/config from 3.0.0 to 3.0.1 (#134)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2022-11-12T17:39:39Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "ba14ff31c54eb49be4278bbf25c937eb3e5338b6",
"body": "Bumps [phpunit/phpunit](https://github.com/sebastianbergmann/phpunit) from 9.5.18 to 9.5.19.\r\n- [Release notes](https://github.com/sebastianbergmann/phpunit/releases)\r\n- [Changelog](https://github.com/sebastianbergmann/phpunit/blob/master/ChangeLog-9.5.md)\r\n- [Commits](https://github.com/sebastianbe\n[…]\nvelopment\r\n update-type: version-update:semver-patch\r\n...\r\n\r\nSigned-off-by: dependabot[bot] <support@github.com>\r\n\r\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "Bump phpunit/phpunit from 9.5.18 to 9.5.19 (#133)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2022-03-16T03:10:51Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "7cc6a21d27722e11499d251de6ac7af11bfb235a",
"body": "Bumps [phpunit/phpunit](https://github.com/sebastianbergmann/phpunit) from 9.5.17 to 9.5.18.\r\n- [Release notes](https://github.com/sebastianbergmann/phpunit/releases)\r\n- [Changelog](https://github.com/sebastianbergmann/phpunit/blob/master/ChangeLog-9.5.md)\r\n- [Commits](https://github.com/sebastianbe\n[…]\nvelopment\r\n update-type: version-update:semver-patch\r\n...\r\n\r\nSigned-off-by: dependabot[bot] <support@github.com>\r\n\r\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "Bump phpunit/phpunit from 9.5.17 to 9.5.18 (#132)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2022-03-09T03:43:38Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "bce31bca0db187a0b53263c80186889666d7695b",
"body": "Bumps [phpunit/phpunit](https://github.com/sebastianbergmann/phpunit) from 9.5.16 to 9.5.17.\r\n- [Release notes](https://github.com/sebastianbergmann/phpunit/releases)\r\n- [Changelog](https://github.com/sebastianbergmann/phpunit/blob/master/ChangeLog-9.5.md)\r\n- [Commits](https://github.com/sebastianbe\n[…]\nvelopment\r\n update-type: version-update:semver-patch\r\n...\r\n\r\nSigned-off-by: dependabot[bot] <support@github.com>\r\n\r\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "Bump phpunit/phpunit from 9.5.16 to 9.5.17 (#131)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2022-03-07T03:11:11Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "da3e5c9b4ed4eea1c21df56f2fab072094182d13",
"body": "Bumps [symfony/console](https://github.com/symfony/console) from 5.4.3 to 5.4.5.\r\n- [Release notes](https://github.com/symfony/console/releases)\r\n- [Changelog](https://github.com/symfony/console/blob/5.4/CHANGELOG.md)\r\n- [Commits](https://github.com/symfony/console/compare/v5.4.3...v5.4.5)\r\n\r\n---\r\nu\n[…]\nroduction\r\n update-type: version-update:semver-patch\r\n...\r\n\r\nSigned-off-by: dependabot[bot] <support@github.com>\r\n\r\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "Bump symfony/console from 5.4.3 to 5.4.5 (#130)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2022-03-01T02:23:30Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "18dd20a993f9c4c05a466907f8a01e8868bce6ea",
"body": "Bumps [phpunit/phpunit](https://github.com/sebastianbergmann/phpunit) from 9.5.14 to 9.5.16.\r\n- [Release notes](https://github.com/sebastianbergmann/phpunit/releases)\r\n- [Changelog](https://github.com/sebastianbergmann/phpunit/blob/master/ChangeLog-9.5.md)\r\n- [Commits](https://github.com/sebastianbe\n[…]\nvelopment\r\n update-type: version-update:semver-patch\r\n...\r\n\r\nSigned-off-by: dependabot[bot] <support@github.com>\r\n\r\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "Bump phpunit/phpunit from 9.5.14 to 9.5.16 (#129)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2022-02-24T04:46:55Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "e64f15e265aa4452d679be3823da97e284e6e41e",
"body": "Bumps [phpunit/phpunit](https://github.com/sebastianbergmann/phpunit) from 9.5.13 to 9.5.14.\r\n- [Release notes](https://github.com/sebastianbergmann/phpunit/releases)\r\n- [Changelog](https://github.com/sebastianbergmann/phpunit/blob/master/ChangeLog-9.5.md)\r\n- [Commits](https://github.com/sebastianbe\n[…]\nvelopment\r\n update-type: version-update:semver-patch\r\n...\r\n\r\nSigned-off-by: dependabot[bot] <support@github.com>\r\n\r\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "Bump phpunit/phpunit from 9.5.13 to 9.5.14 (#128)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2022-02-21T02:46:00Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "ea9260783582ea3e54755f4080520dbf6eb22d90",
"body": "Bumps [symfony/console](https://github.com/symfony/console) from 5.4.2 to 5.4.3.\r\n- [Release notes](https://github.com/symfony/console/releases)\r\n- [Changelog](https://github.com/symfony/console/blob/5.4/CHANGELOG.md)\r\n- [Commits](https://github.com/symfony/console/compare/v5.4.2...v5.4.3)\r\n\r\n---\r\nu\n[…]\nroduction\r\n update-type: version-update:semver-patch\r\n...\r\n\r\nSigned-off-by: dependabot[bot] <support@github.com>\r\n\r\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "Bump symfony/console from 5.4.2 to 5.4.3 (#126)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2022-01-31T03:40:28Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "53b33018aa44a98e7947ce5f57d7a00865a3d971",
"body": "Bumps [symfony/yaml](https://github.com/symfony/yaml) from 5.4.2 to 5.4.3.\r\n- [Release notes](https://github.com/symfony/yaml/releases)\r\n- [Changelog](https://github.com/symfony/yaml/blob/5.4/CHANGELOG.md)\r\n- [Commits](https://github.com/symfony/yaml/compare/v5.4.2...v5.4.3)\r\n\r\n---\r\nupdated-dependen\n[…]\nroduction\r\n update-type: version-update:semver-patch\r\n...\r\n\r\nSigned-off-by: dependabot[bot] <support@github.com>\r\n\r\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "Bump symfony/yaml from 5.4.2 to 5.4.3 (#127)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2022-01-31T03:39:07Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "7ec7f3f1d62f3c1edb341441e1eb56da513c36da",
"body": "Bumps [phpunit/phpunit](https://github.com/sebastianbergmann/phpunit) from 9.5.12 to 9.5.13.\r\n- [Release notes](https://github.com/sebastianbergmann/phpunit/releases)\r\n- [Changelog](https://github.com/sebastianbergmann/phpunit/blob/master/ChangeLog-9.5.md)\r\n- [Commits](https://github.com/sebastianbe\n[…]\nvelopment\r\n update-type: version-update:semver-patch\r\n...\r\n\r\nSigned-off-by: dependabot[bot] <support@github.com>\r\n\r\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "Bump phpunit/phpunit from 9.5.12 to 9.5.13 (#125)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2022-01-25T01:30:38Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "70a7274508516231f5a7da2afda7b574b77dbeb6",
"body": "Bumps [phpunit/phpunit](https://github.com/sebastianbergmann/phpunit) from 9.5.11 to 9.5.12.\r\n- [Release notes](https://github.com/sebastianbergmann/phpunit/releases)\r\n- [Changelog](https://github.com/sebastianbergmann/phpunit/blob/master/ChangeLog-9.5.md)\r\n- [Commits](https://github.com/sebastianbe\n[…]\nvelopment\r\n update-type: version-update:semver-patch\r\n...\r\n\r\nSigned-off-by: dependabot[bot] <support@github.com>\r\n\r\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "Bump phpunit/phpunit from 9.5.11 to 9.5.12 (#124)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2022-01-24T02:22:50Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "a5da6289766c3504db049f64a67317a1b0387518",
"body": "Bumps [mockery/mockery](https://github.com/mockery/mockery) from 1.4.4 to 1.5.0.\r\n- [Release notes](https://github.com/mockery/mockery/releases)\r\n- [Changelog](https://github.com/mockery/mockery/blob/master/CHANGELOG.md)\r\n- [Commits](https://github.com/mockery/mockery/compare/1.4.4...1.5.0)\r\n\r\n---\r\n\n[…]\nvelopment\r\n update-type: version-update:semver-minor\r\n...\r\n\r\nSigned-off-by: dependabot[bot] <support@github.com>\r\n\r\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "Bump mockery/mockery from 1.4.4 to 1.5.0 (#123)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2022-01-21T01:29:25Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "f49e7c77de0e6bd1cfe4cd9e8529fbdb12bc10c9",
"body": null,
"is_bot": false,
"headline": "Add section linking to php-semver-checker-git",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2021-12-31T16:25:31Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "934dd8e2761fb17f476433ff4f2af3ec0e5f3597",
"body": null,
"is_bot": false,
"headline": "Changelog for v0.15.1",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2021-12-31T02:17:20Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "53b0467af7656b0337080894e383151c957667a6",
"body": null,
"is_bot": false,
"headline": "Add typing to Finder",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2021-12-31T02:12:13Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "779cff52c3a314db83b840bf22a7cc7b2882e102",
"body": "This version adds support for PHP 8.0/8.1.",
"is_bot": false,
"headline": "Bump hassankhan/config to ^3.0.0",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2021-12-31T01:54:48Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "4dd4dd3e96df5fc306d5ebcf348be586f4fc587b",
"body": null,
"is_bot": false,
"headline": "Replace | with || in composer.json",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2021-12-31T01:54:48Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "80349c1a58498e50a6762680a703a56b76079c00",
"body": null,
"is_bot": false,
"headline": "Remove deprecation warnings suppression",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2021-12-31T01:54:48Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "950f2934352b47babd54accda3a9fc7b7485982f",
"body": null,
"is_bot": false,
"headline": "Bump PHPUnit and Mockery dependencies",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2021-12-18T22:51:11Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "ba40f0bc420e833f871fc36f93b2388fe50aa304",
"body": null,
"is_bot": false,
"headline": "Fixes for PHP 8.1",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2021-12-18T22:42:41Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "543138bda85147bfe8d459af320caed6292dab67",
"body": null,
"is_bot": false,
"headline": "Update retry and codecov-action github actions (#117)",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2021-12-18T22:41:16Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "0476b04560501a0c9f8a4ade5a1e3e5dafe5408e",
"body": null,
"is_bot": false,
"headline": "Initial dependabot configuration",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2021-12-18T22:37:14Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "ed5e46b0c57f97b98e80772ac90c4f8e2a8aaabf",
"body": null,
"is_bot": false,
"headline": "Bump composer branch-alias to 0.16-dev",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2021-11-08T03:44:54Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a47deb8bad388b81a5260fff192b41411694be70",
"body": null,
"is_bot": false,
"headline": "Changelog for v0.15.0",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2021-11-08T03:44:54Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "41acb2fb71da703a716d22a854a5c24292f2027f",
"body": "Noodlehaus\\AbstractConfig is currently not compatible with its\ninterfaces because it does not declare their return types. In order to\nget a working version of php-semver-checker without warnings we will\nsuppress those warnings until we can replace the hassankhan/config with\na different one that is also compatible with PHP 8+.",
"is_bot": false,
"headline": "Suppress deprecated warnings",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2021-11-08T03:44:53Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "19f2cbf3b532d9ac2faf50a17a0c343f81db713a",
"body": "This is necessary to get the fixes needed to support PHP 8.1.",
"is_bot": false,
"headline": "Bump tomzx/finder to ^0.2",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2021-11-08T03:44:53Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "f5da6f0b862670d064574bfd52c0382b237239e9",
"body": null,
"is_bot": false,
"headline": "Add support for PHP 8.1",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2021-11-08T03:44:53Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "c5c149666ef9b2038a236465908db2963b08aecf",
"body": null,
"is_bot": false,
"headline": "Update build status badge to use github actions",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2020-12-10T21:27:41Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "492eaf60770b1f62055c00ee2b83525cee61a7b7",
"body": null,
"is_bot": false,
"headline": "Remove unused .scrutinizer.yml",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2020-12-10T21:16:58Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "bfdb76be4a76b64bed2c9b6b255c9b8b864b205d",
"body": "Scrutinizer-ci appears to be unmaintained at this point and ocular.phar\ndoes not support PHP 8.0. Let's use codecov instead.",
"is_bot": false,
"headline": "Replace scrutinizer-ci by codecov",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2020-12-10T19:52:00Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "3b0108e5c2d1eeccebe688f47e25f5e52257b937",
"body": null,
"is_bot": false,
"headline": "Update PHPUnit configuration schema",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2020-12-09T06:00:30Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "2907a008b8c4531a44db827c0f645203f150b6ab",
"body": null,
"is_bot": false,
"headline": "Set minimum phpunit versions to 9.5",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2020-12-09T05:54:21Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "fa923dcce5d1ff94fcdea97c74f3343a01fdbbc7",
"body": null,
"is_bot": false,
"headline": "Bump PHP minimum version to 7.3",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2020-12-09T05:54:21Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "dd447a2f54b11d5d1be007e630f375a20cb01ca4",
"body": "Bump minimum PHP to 7.3 according to LTS.\n\nAdd PHP 8.0.",
"is_bot": false,
"headline": "Replace travis-ci by github actions",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2020-12-09T05:54:21Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "583a24ef8ebd38732123339506df1311b0c943db",
"body": null,
"is_bot": false,
"headline": "Bump symfony/console, symfony/yaml and phpunit/phpunit",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2020-10-01T03:29:20Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "ebe7fd4e80b46e339d15af7c0d9ef001dfe64c18",
"body": null,
"is_bot": false,
"headline": "Bump composer branch-alias to 0.15-dev.",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2020-04-17T04:35:49Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "4496ada7e8370e485054ffddc4c563fe74684ed1",
"body": null,
"is_bot": false,
"headline": "Changelog for v0.14.0.",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2020-04-17T04:34:42Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "9f7f98ed554b8201d95756b2a0b7f3da9118358c",
"body": "Replace use of PHPUnit_Framework_Assert by PHPUnit\\Framework\\Assert.\n\nCall $node->name->toString() since $node->name is now an\nIdentifier object (per PHP-Parser 4).\n\nDo not add anonymous classes to the registry.\n\nReplace $parameter->name by $parameter->var->name (per PHP-Parser 4).",
"is_bot": false,
"headline": "Drop support for PHP 5.6, 7.0 and hhvm",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2020-04-17T04:13:59Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "4a545c5a1aaa48df605bbbe4d091257daa31618e",
"body": null,
"is_bot": false,
"headline": "Add PHP 7.3 to .travis.yml.",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2019-03-09T19:04:45Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "6e7ebd0cb1bba26783ce248de3a81c7617e42eb4",
"body": null,
"is_bot": false,
"headline": "Bump composer branch-alias to 0.14-dev.",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2019-03-09T19:02:35Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d26fbefeb8405f4dc6ae7fb3a003af3b5b5f948a",
"body": null,
"is_bot": false,
"headline": "Changelog for v0.13.0.",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2019-03-09T19:02:35Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "6e53362e9393c31534bc2392c23a6e35e82373ed",
"body": "…ter added) is a MAJOR change, not a PATCH.",
"is_bot": false,
"headline": "Update LevelMapping to reflect that V059 (Trait private method parame…",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2018-04-19T19:12:13Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "26109abb1f7d01d93fa7da1fd000a08892e90e89",
"body": null,
"is_bot": false,
"headline": "Revert SignatureTest.",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2018-02-24T22:25:45Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "7bdf3e169b0b9fbbcc670f93c7d25d40db05a223",
"body": "…fined method PhpParser\\Node\\NullableType::toString()\" error.",
"is_bot": false,
"headline": "Fix a bug where PHP 7.1 nullable types would generate a \"Call to unde…",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2018-02-24T22:21:34Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "002f3e1a66359055e76f39beb64e39d404f1be11",
"body": "… different namespace but similar name where merged into a single instance, ignoring the namespace.",
"is_bot": false,
"headline": "Fix a regression where classes, functions, interfaces and traits with…",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2018-02-24T21:39:07Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "17a825f272763d1f83c35b8b3d9764ccd36b3f2c",
"body": null,
"is_bot": false,
"headline": "Add a note about contributing in the README.md.",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2018-02-23T00:54:35Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "b83957bf165065a0d6a3f24f3df5b04c6170219c",
"body": null,
"is_bot": false,
"headline": "Add a note about Semantic Versioning 2.0.0 in the README.md.",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2018-02-23T00:53:55Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "1cdbe42d7417b3c0f58f2ce22c36c1e517892667",
"body": null,
"is_bot": false,
"headline": "Merge branch 'pr/99'",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2018-02-22T20:51:56Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "6bf8b87a67cfa2fa63320badbc9448aa0f0f4455",
"body": null,
"is_bot": false,
"headline": "Code style pass.",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2018-02-22T20:49:43Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "931d81fef3795081b254db5656f818f5510cb7b2",
"body": null,
"is_bot": false,
"headline": "Use case changed instead of rename in rule names",
"author_name": "Emmet O'Grady",
"author_login": "emmetog",
"committed_at": "2018-02-19T07:51:39Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "e50e738adea0165dfbc95c7b0b2fa916671e98aa",
"body": null,
"is_bot": false,
"headline": "Rename all operations to CaseChanged",
"author_name": "Emmet O'Grady",
"author_login": "emmetog",
"committed_at": "2018-02-19T07:43:46Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "667e0bee6bd2fcb3fc2dfb99294b6adbe670959e",
"body": null,
"is_bot": false,
"headline": "Detect function renaming too",
"author_name": "Emmet O'Grady",
"author_login": "emmetog",
"committed_at": "2018-02-19T07:38:32Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "ce3e042fcef5645d2f63f1a3a9039fc0fc0761b3",
"body": null,
"is_bot": false,
"headline": "Rename test methods",
"author_name": "Emmet O'Grady",
"author_login": "emmetog",
"committed_at": "2018-02-19T07:14:04Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d672b2de769113b2213492e184f669d2f0495cbd",
"body": null,
"is_bot": false,
"headline": "Spaces to tabs",
"author_name": "Emmet O'Grady",
"author_login": "emmetog",
"committed_at": "2018-02-19T07:12:15Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "fbdb9403cfb4ae22f69fbe2c6c09f4c3cba1e677",
"body": null,
"is_bot": false,
"headline": "Make TraitRenamedCaseOnly extend Delta",
"author_name": "Emmet O'Grady",
"author_login": "emmetog",
"committed_at": "2018-02-19T07:10:34Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a15c6b78ec32b2218aeff2786a6ebcda622c4530",
"body": null,
"is_bot": false,
"headline": "Make ClassMethodRenamedCaseOnly extend Delta",
"author_name": "Emmet O'Grady",
"author_login": "emmetog",
"committed_at": "2018-02-19T07:06:03Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d49730cf439ba9becdd1d99bd4651c339a242de8",
"body": null,
"is_bot": false,
"headline": "Remove empty line",
"author_name": "Emmet O'Grady",
"author_login": "emmetog",
"committed_at": "2018-02-19T06:58:06Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "0c247116a96c1e99e7fd95a62841b3754b7aae98",
"body": null,
"is_bot": false,
"headline": "Remove unneccessary compare of lowercase names",
"author_name": "Emmet O'Grady",
"author_login": "emmetog",
"committed_at": "2018-02-19T06:56:56Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "596646c215c79c99d0d443e664077af47e516160",
"body": null,
"is_bot": false,
"headline": "Rename $mappingsBeforeKeyed to $filesBeforeKeyed",
"author_name": "Emmet O'Grady",
"author_login": "emmetog",
"committed_at": "2018-02-19T06:51:15Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "e5277471318d437b2a410ba9695489421e4d3c90",
"body": null,
"is_bot": false,
"headline": "Interface operation extend from Delta",
"author_name": "Emmet O'Grady",
"author_login": "emmetog",
"committed_at": "2018-02-19T06:50:48Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "50b291d20e7ae3585273d35aa1aafa83542c1e2e",
"body": null,
"is_bot": false,
"headline": "Merge branch 'master' into case-insensitive-method-names",
"author_name": "Emmet O'Grady",
"author_login": "emmetog",
"committed_at": "2018-02-19T06:43:16Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "9ca9220808f9c72fb6f6fab2ccfd362eca6c4e6b",
"body": null,
"is_bot": false,
"headline": "Add tests for all visibilities of case change",
"author_name": "Emmet O'Grady",
"author_login": "emmetog",
"committed_at": "2018-02-19T06:38:57Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "e1d49be8469339b8b092d624de2737849483e438",
"body": null,
"is_bot": false,
"headline": "Split method and trait rename into visibility",
"author_name": "Emmet O'Grady",
"author_login": "emmetog",
"committed_at": "2018-02-19T06:23:15Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "7944fd1c04f93eeeacbfe483c26de715c75a741f",
"body": "…aits.",
"is_bot": false,
"headline": "Generalize unary operations on classes, interfaces, properties and tr…",
"author_name": "Tom Rochette",
"author_login": "tomzx",
"committed_at": "2018-02-15T21:24:46Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "f8e54b37f221ad8f12fa78e48f841aca51cd1ff3",
"body": null,
"is_bot": false,
"headline": "Add rule for trait renamed case only",
"author_name": "Emmet O'Grady",
"author_login": "emmetog",
"committed_at": "2018-02-14T07:35:44Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "558aaae09f9246b6735f2fdfb5fa60efd7cad2f8",
"body": null,
"is_bot": false,
"headline": "Detect case only name changes for Classes",
"author_name": "Emmet O'Grady",
"author_login": "emmetog",
"committed_at": "2018-02-14T07:25:06Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "b9de798637ce956ccffe15a70d481765ef67cf2c",
"body": null,
"is_bot": false,
"headline": "Detect case only name change for Traits",
"author_name": "Emmet O'Grady",
"author_login": "emmetog",
"committed_at": "2018-02-14T07:10:17Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d0191d8809b28cdc492689e99bbefb7a14dd1c4a",
"body": null,
"is_bot": false,
"headline": "Revert Signature::analyze",
"author_name": "Emmet O'Grady",
"author_login": "emmetog",
"committed_at": "2018-02-14T06:49:40Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "5b091f45707118f6e9d38ad2269e2dbf5d1c6b7f",
"body": null,
"is_bot": false,
"headline": "Detect interface case name changes as PATCH",
"author_name": "Emmet O'Grady",
"author_login": "emmetog",
"committed_at": "2018-02-13T08:51:39Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "642429503b1f7711bd8bc4119c1feda678164683",
"body": null,
"is_bot": false,
"headline": "Remove commented var_dump",
"author_name": "Emmet O'Grady",
"author_login": "emmetog",
"committed_at": "2018-02-12T08:31:20Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d2418c3d60feabf2c6f9dccb6285bb1f5945a2a1",
"body": null,
"is_bot": false,
"headline": "Make renaming method case a PATCH change",
"author_name": "Emmet O'Grady",
"author_login": "emmetog",
"committed_at": "2018-02-12T08:20:16Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "63f11e9586dfce5fc9b704f6ef01620d69a4e6c2",
"body": null,
"is_bot": false,
"headline": "Detect method name case changes",
"author_name": "Emmet O'Grady",
"author_login": "emmetog",
"committed_at": "2018-02-12T07:56:16Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a3822919c7a6e3f74ef8fbea9a27c7eed8437c65",
"body": null,
"is_bot": false,
"headline": "Add some tests for Signature comparator",
"author_name": "Emmet O'Grady",
"author_login": "emmetog",
"committed_at": "2018-02-12T07:49:15Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "4f565b6b877ce9eff1674a78e6e8edd6d7182838",
"body": null,
"is_bot": false,
"headline": "Change indentation to tabs",
"author_name": "Emmet O'Grady",
"author_login": "emmetog",
"committed_at": "2018-02-12T07:29:05Z",
"body_truncated": false,
"is_coding_agent": false
}
],
"releases_count": 25,
"commits_last_year": 8,
"latest_release_at": "2025-10-30T07:05:19Z",
"latest_release_tag": "v0.17.0",
"releases_from_tags": false,
"days_since_last_push": 181,
"active_weeks_last_year": 2,
"days_since_latest_release": 279,
"mean_days_between_releases": 384
},
"artifacts": {
"collected": true,
"structure": [],
"declarations": [
{
"name": "tomzx/php-semver-checker",
"path": "composer.json",
"tokens": [
"composer.type:library",
"composer.bin"
],
"ecosystem": "packagist"
}
]
},
"community": {
"has_readme": true,
"has_license": true,
"readme_badges": {
"hosts": [
"poser.pugx.org",
"shields.io"
],
"total": 6,
"header": 6,
"collected": true,
"has_inspect_badge": false
},
"has_description": true,
"has_contributing": false,
"health_percentage": 42,
"has_issue_template": false,
"has_code_of_conduct": false,
"has_pull_request_template": false
},
"ecosystem": {
"packages": [
{
"name": "tomzx/php-semver-checker",
"exists": true,
"license": "MIT",
"keywords": [
"semver",
"semantic versioning",
"checker"
],
"ecosystem": "packagist",
"categories": [],
"matches_repo": true,
"registry_url": "https://packagist.org/packages/tomzx/php-semver-checker",
"declared_type": "library",
"is_deprecated": false,
"latest_version": "v0.17.0",
"repository_url": "https://github.com/tomzx/php-semver-checker",
"versions_count": 25,
"total_downloads": 241787,
"dependents_count": 3,
"deprecation_note": null,
"maintainers_count": null,
"monthly_downloads": 2272,
"first_published_at": null,
"latest_published_at": "2025-10-30T07:02:48Z",
"latest_version_yanked": null,
"days_since_latest_publish": 279
}
]
},
"popularity": {
"forks": 28,
"stars": 436,
"watchers": 13,
"fork_history": {
"days": [
{
"date": "2015-01-11",
"count": 2
},
{
"date": "2015-01-13",
"count": 2
},
{
"date": "2015-03-02",
"count": 1
},
{
"date": "2015-04-15",
"count": 1
},
{
"date": "2015-04-20",
"count": 1
},
{
"date": "2016-01-15",
"count": 1
},
{
"date": "2017-05-12",
"count": 1
},
{
"date": "2017-05-16",
"count": 1
},
{
"date": "2017-08-19",
"count": 1
},
{
"date": "2017-11-27",
"count": 1
},
{
"date": "2018-03-04",
"count": 1
},
{
"date": "2018-03-14",
"count": 1
},
{
"date": "2018-08-16",
"count": 1
},
{
"date": "2020-03-24",
"count": 1
},
{
"date": "2020-11-15",
"count": 1
},
{
"date": "2021-03-11",
"count": 1
},
{
"date": "2021-08-13",
"count": 1
},
{
"date": "2021-11-05",
"count": 1
},
{
"date": "2021-11-09",
"count": 1
},
{
"date": "2022-01-20",
"count": 1
},
{
"date": "2022-11-11",
"count": 1
},
{
"date": "2023-05-17",
"count": 1
},
{
"date": "2023-06-17",
"count": 1
},
{
"date": "2023-09-15",
"count": 1
},
{
"date": "2025-07-24",
"count": 1
},
{
"date": "2025-09-18",
"count": 1
}
],
"complete": true,
"collected": 28,
"total_forks": 28
},
"star_history": null,
"open_issues_and_prs": 39
},
"ai_readiness": {
"has_nix": false,
"example_dirs": [],
"has_llms_txt": false,
"has_dockerfile": false,
"has_mcp_signal": false,
"bootstrap_files": [],
"api_schema_files": [],
"has_devcontainer": false,
"typecheck_configs": [],
"toolchain_manifests": [],
"largest_source_bytes": 22524,
"source_files_sampled": 178,
"oversized_source_files": 0,
"agent_instruction_files": [],
"agent_instruction_max_bytes": null
},
"dependencies": {
"manifests": [
"composer.json"
],
"advisories": {
"error": null,
"scope": "repository_graph",
"source": "osv",
"findings": [
{
"name": "phpunit/phpunit",
"direct": false,
"version": "9.6.29",
"severity": "high",
"ecosystem": "packagist",
"cvss_score": 7.8,
"advisory_ids": [
"GHSA-vvj3-c3rp-c85p"
],
"fixed_version": "12.5.8",
"advisory_count": 1,
"oldest_advisory_days": 189
},
{
"name": "symfony/yaml",
"direct": true,
"version": "6.4.26",
"severity": "moderate",
"ecosystem": "packagist",
"cvss_score": 5.3,
"advisory_ids": [
"GHSA-4qpc-3hr4-r2p4",
"GHSA-9frc-8383-795m",
"GHSA-c2p3-7m5p-cv8x"
],
"fixed_version": "8.0.12",
"advisory_count": 3,
"oldest_advisory_days": 69
}
],
"collected": true,
"malicious": [],
"truncated": false,
"by_severity": {
"high": 1,
"moderate": 1
},
"advisory_count": 4,
"affected_count": 2,
"assessed_count": 42,
"malicious_count": 0,
"assessed_package": null,
"unassessed_count": 0,
"direct_affected_count": 1
},
"ecosystems": [
"packagist"
],
"dependencies": [
{
"name": "hassankhan/config",
"manifest": "composer.json",
"ecosystem": "packagist",
"version_constraint": "^3.0"
},
{
"name": "nikic/php-parser",
"manifest": "composer.json",
"ecosystem": "packagist",
"version_constraint": "^5.2"
},
{
"name": "symfony/console",
"manifest": "composer.json",
"ecosystem": "packagist",
"version_constraint": "^6.0 || ^7.0"
},
{
"name": "symfony/yaml",
"manifest": "composer.json",
"ecosystem": "packagist",
"version_constraint": "^6.0 || ^7.0"
},
{
"name": "tomzx/finder",
"manifest": "composer.json",
"ecosystem": "packagist",
"version_constraint": "^0.2"
}
],
"all_dependencies": {
"error": null,
"source": "github-sbom",
"packages": [
{
"name": "hassankhan/config",
"direct": true,
"version": "3.2.0",
"ecosystem": "packagist"
},
{
"name": "nikic/php-parser",
"direct": true,
"version": "5.6.2",
"ecosystem": "packagist"
},
{
"name": "symfony/console",
"direct": true,
"version": "6.4.27",
"ecosystem": "packagist"
},
{
"name": "symfony/yaml",
"direct": true,
"version": "6.4.26",
"ecosystem": "packagist"
},
{
"name": "tomzx/finder",
"direct": true,
"version": "0.2.0",
"ecosystem": "packagist"
},
{
"name": "doctrine/instantiator",
"direct": false,
"version": "2.0.0",
"ecosystem": "packagist"
},
{
"name": "hamcrest/hamcrest-php",
"direct": false,
"version": "2.1.1",
"ecosystem": "packagist"
},
{
"name": "mockery/mockery",
"direct": false,
"version": "1.6.12",
"ecosystem": "packagist"
},
{
"name": "myclabs/deep-copy",
"direct": false,
"version": "1.13.4",
"ecosystem": "packagist"
},
{
"name": "phar-io/manifest",
"direct": false,
"version": "2.0.4",
"ecosystem": "packagist"
},
{
"name": "phar-io/version",
"direct": false,
"version": "3.2.1",
"ecosystem": "packagist"
},
{
"name": "phpunit/php-code-coverage",
"direct": false,
"version": "9.2.32",
"ecosystem": "packagist"
},
{
"name": "phpunit/php-file-iterator",
"direct": false,
"version": "3.0.6",
"ecosystem": "packagist"
},
{
"name": "phpunit/php-invoker",
"direct": false,
"version": "3.1.1",
"ecosystem": "packagist"
},
{
"name": "phpunit/php-text-template",
"direct": false,
"version": "2.0.4",
"ecosystem": "packagist"
},
{
"name": "phpunit/php-timer",
"direct": false,
"version": "5.0.3",
"ecosystem": "packagist"
},
{
"name": "phpunit/phpunit",
"direct": false,
"version": "9.6.29",
"ecosystem": "packagist"
},
{
"name": "psr/container",
"direct": false,
"version": "2.0.2",
"ecosystem": "packagist"
},
{
"name": "sebastian/cli-parser",
"direct": false,
"version": "1.0.2",
"ecosystem": "packagist"
},
{
"name": "sebastian/code-unit",
"direct": false,
"version": "1.0.8",
"ecosystem": "packagist"
},
{
"name": "sebastian/code-unit-reverse-lookup",
"direct": false,
"version": "2.0.3",
"ecosystem": "packagist"
},
{
"name": "sebastian/comparator",
"direct": false,
"version": "4.0.9",
"ecosystem": "packagist"
},
{
"name": "sebastian/complexity",
"direct": false,
"version": "2.0.3",
"ecosystem": "packagist"
},
{
"name": "sebastian/diff",
"direct": false,
"version": "4.0.6",
"ecosystem": "packagist"
},
{
"name": "sebastian/environment",
"direct": false,
"version": "5.1.5",
"ecosystem": "packagist"
},
{
"name": "sebastian/exporter",
"direct": false,
"version": "4.0.8",
"ecosystem": "packagist"
},
{
"name": "sebastian/global-state",
"direct": false,
"version": "5.0.8",
"ecosystem": "packagist"
},
{
"name": "sebastian/lines-of-code",
"direct": false,
"version": "1.0.4",
"ecosystem": "packagist"
},
{
"name": "sebastian/object-enumerator",
"direct": false,
"version": "4.0.4",
"ecosystem": "packagist"
},
{
"name": "sebastian/object-reflector",
"direct": false,
"version": "2.0.4",
"ecosystem": "packagist"
},
{
"name": "sebastian/recursion-context",
"direct": false,
"version": "4.0.6",
"ecosystem": "packagist"
},
{
"name": "sebastian/resource-operations",
"direct": false,
"version": "3.0.4",
"ecosystem": "packagist"
},
{
"name": "sebastian/type",
"direct": false,
"version": "3.2.1",
"ecosystem": "packagist"
},
{
"name": "sebastian/version",
"direct": false,
"version": "3.0.2",
"ecosystem": "packagist"
},
{
"name": "symfony/deprecation-contracts",
"direct": false,
"version": "3.6.0",
"ecosystem": "packagist"
},
{
"name": "symfony/polyfill-ctype",
"direct": false,
"version": "1.33.0",
"ecosystem": "packagist"
},
{
"name": "symfony/polyfill-intl-grapheme",
"direct": false,
"version": "1.33.0",
"ecosystem": "packagist"
},
{
"name": "symfony/polyfill-intl-normalizer",
"direct": false,
"version": "1.33.0",
"ecosystem": "packagist"
},
{
"name": "symfony/polyfill-mbstring",
"direct": false,
"version": "1.33.0",
"ecosystem": "packagist"
},
{
"name": "symfony/service-contracts",
"direct": false,
"version": "3.6.0",
"ecosystem": "packagist"
},
{
"name": "symfony/string",
"direct": false,
"version": "6.4.26",
"ecosystem": "packagist"
},
{
"name": "theseer/tokenizer",
"direct": false,
"version": "1.2.3",
"ecosystem": "packagist"
}
],
"collected": true,
"truncated": false,
"total_count": 42,
"direct_count": 5,
"indirect_count": 37
}
},
"maintainership": {
"issues": {
"open_prs": 9,
"merged_prs": 30,
"open_issues": 30,
"closed_ratio": 0.697,
"closed_issues": 69,
"closed_unmerged_prs": 46
},
"bus_factor": 1,
"bot_contributors": 1,
"top_contributors": [
{
"type": "User",
"login": "tomzx",
"commits": 189,
"avatar_url": "https://avatars.githubusercontent.com/u/188960?v=4"
},
{
"type": "User",
"login": "emmetog",
"commits": 25,
"avatar_url": "https://avatars.githubusercontent.com/u/1182891?v=4"
},
{
"type": "User",
"login": "nochso",
"commits": 8,
"avatar_url": "https://avatars.githubusercontent.com/u/6887618?v=4"
},
{
"type": "User",
"login": "Ocramius",
"commits": 3,
"avatar_url": "https://avatars.githubusercontent.com/u/154256?v=4"
},
{
"type": "User",
"login": "GrahamCampbell",
"commits": 1,
"avatar_url": "https://avatars.githubusercontent.com/u/2829600?v=4"
},
{
"type": "User",
"login": "mikeSimonson",
"commits": 1,
"avatar_url": "https://avatars.githubusercontent.com/u/907613?v=4"
}
],
"contributors_sampled": 6,
"top_contributor_share": 0.833
},
"quality_signals": {
"has_ci": true,
"has_tests": true,
"ci_workflows": [
"ci.yml"
],
"has_docs_dir": true,
"linter_configs": [],
"has_editorconfig": true,
"has_linter_config": false,
"has_precommit_config": false
},
"security_signals": {
"lockfiles": [
"composer.lock"
],
"scorecard": {
"checks": [
{
"name": "Binary-Artifacts",
"score": 10,
"reason": "no binaries found in the repo",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
},
{
"name": "Branch-Protection",
"score": null,
"reason": "internal error: error during branchesHandler.setup: internal error: some github tokens can't read classic branch protection rules: https://github.com/ossf/scorecard-action/blob/main/docs/authentication/fine-grained-auth-token.md",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
},
{
"name": "CI-Tests",
"score": 0,
"reason": "0 out of 15 merged PRs checked by a CI test -- score normalized to 0",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
},
{
"name": "CII-Best-Practices",
"score": 0,
"reason": "no effort to earn an OpenSSF best practices badge detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
},
{
"name": "Code-Review",
"score": 0,
"reason": "Found 0/16 approved changesets -- score normalized to 0",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
},
{
"name": "Contributors",
"score": 3,
"reason": "project has 1 contributing companies or organizations -- score normalized to 3",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
},
{
"name": "Dangerous-Workflow",
"score": 10,
"reason": "no dangerous workflow patterns detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
},
{
"name": "Dependency-Update-Tool",
"score": 10,
"reason": "update tool detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
},
{
"name": "Fuzzing",
"score": 0,
"reason": "project is not fuzzed",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
},
{
"name": "License",
"score": 10,
"reason": "license file detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
},
{
"name": "Maintained",
"score": 0,
"reason": "0 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 0",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
},
{
"name": "Packaging",
"score": null,
"reason": "packaging workflow not detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
},
{
"name": "Pinned-Dependencies",
"score": 0,
"reason": "dependency not pinned by hash detected -- score normalized to 0",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
},
{
"name": "SAST",
"score": 0,
"reason": "SAST tool is not run on all commits -- score normalized to 0",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
},
{
"name": "Security-Policy",
"score": 0,
"reason": "security policy file not detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
},
{
"name": "Signed-Releases",
"score": 0,
"reason": "Project has not signed or included provenance with any releases.",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
},
{
"name": "Token-Permissions",
"score": 0,
"reason": "detected GitHub workflow tokens with excessive permissions",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
},
{
"name": "Vulnerabilities",
"score": 6,
"reason": "4 existing vulnerabilities detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
}
],
"commit": "8578ed0cf7916327943421f8516b7913efe18cbc",
"ran_at": "2026-08-05T09:23:19Z",
"aggregate_score": 3.5,
"scorecard_version": "v5.5.0"
},
"has_codeql_workflow": false,
"has_security_policy": false,
"has_dependabot_config": true
},
"contribution_flow": {
"collected": true,
"recent_prs": {
"merged_7d": 0,
"decided_7d": 0,
"merged_30d": 0,
"authors_30d": 0,
"decided_30d": 0,
"sample_size": 60,
"window_days": 30,
"sample_exhausted": false,
"authors_probed_30d": 0,
"newcomer_merged_30d": 0,
"bot_prs_excluded_30d": 0,
"newcomer_authors_30d": 0,
"newcomer_decided_30d": 0
},
"ci_last_run_at": "2026-02-05T07:00:17Z",
"oldest_open_prs": [
{
"number": 76,
"created_at": "2016-01-25T20:02:25Z",
"last_comment_at": "2016-01-27T21:01:50Z",
"last_comment_author": "nochso"
},
{
"number": 78,
"created_at": "2016-01-26T21:37:00Z",
"last_comment_at": "2016-01-27T23:29:21Z",
"last_comment_author": "tomzx"
},
{
"number": 122,
"created_at": "2022-01-20T09:55:56Z",
"last_comment_at": "2023-06-19T07:15:05Z",
"last_comment_author": "anyt"
},
{
"number": 164,
"created_at": "2022-12-28T17:19:44Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 174,
"created_at": "2023-03-01T02:01:59Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 175,
"created_at": "2023-03-06T02:13:42Z",
"last_comment_at": "2023-03-06T02:14:31Z",
"last_comment_author": "codecov-commenter"
},
{
"number": 177,
"created_at": "2023-03-28T01:59:32Z",
"last_comment_at": "2025-12-27T18:59:00Z",
"last_comment_author": "codecov"
},
{
"number": 178,
"created_at": "2023-04-03T02:00:12Z",
"last_comment_at": "2023-04-03T02:01:36Z",
"last_comment_author": "codecov-commenter"
},
{
"number": 181,
"created_at": "2023-09-18T09:15:59Z",
"last_comment_at": null,
"last_comment_author": null
}
],
"last_merged_pr_at": "2023-01-09T01:27:48Z",
"ci_last_conclusion": "SUCCESS",
"oldest_open_issues": [
{
"number": 6,
"created_at": "2015-01-11T00:20:20Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 8,
"created_at": "2015-01-11T03:59:29Z",
"last_comment_at": "2023-09-22T14:00:47Z",
"last_comment_author": "alfredbez"
},
{
"number": 24,
"created_at": "2015-01-16T11:08:31Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 29,
"created_at": "2015-01-16T11:27:47Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 44,
"created_at": "2015-01-27T12:11:56Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 49,
"created_at": "2015-02-24T12:57:24Z",
"last_comment_at": "2015-02-25T17:48:46Z",
"last_comment_author": "mikeSimonson"
},
{
"number": 50,
"created_at": "2015-02-25T02:58:26Z",
"last_comment_at": "2016-05-08T02:31:49Z",
"last_comment_author": "tomzx"
},
{
"number": 51,
"created_at": "2015-02-25T16:34:54Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 52,
"created_at": "2015-03-13T02:44:16Z",
"last_comment_at": "2015-03-14T08:08:32Z",
"last_comment_author": "xabbuh"
},
{
"number": 53,
"created_at": "2015-03-13T03:50:11Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 54,
"created_at": "2015-03-19T12:07:58Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 63,
"created_at": "2015-05-28T03:25:07Z",
"last_comment_at": "2015-05-29T11:56:40Z",
"last_comment_author": "tomzx"
},
{
"number": 68,
"created_at": "2015-06-24T03:16:28Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 69,
"created_at": "2015-06-24T03:20:31Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 71,
"created_at": "2015-07-12T17:32:24Z",
"last_comment_at": "2016-01-20T23:56:56Z",
"last_comment_author": "tomzx"
},
{
"number": 73,
"created_at": "2016-01-17T19:44:54Z",
"last_comment_at": "2016-01-23T10:40:12Z",
"last_comment_author": "nochso"
},
{
"number": 77,
"created_at": "2016-01-25T20:38:19Z",
"last_comment_at": "2016-01-27T23:21:55Z",
"last_comment_author": "tomzx"
},
{
"number": 85,
"created_at": "2016-05-08T02:20:31Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 86,
"created_at": "2016-05-09T14:56:51Z",
"last_comment_at": "2018-02-08T08:25:03Z",
"last_comment_author": "emmetog"
},
{
"number": 87,
"created_at": "2016-05-14T01:55:09Z",
"last_comment_at": "2019-08-07T12:04:06Z",
"last_comment_author": "larsroettig"
}
]
}
},
"config": {
"disabled_metrics": [],
"disabled_categories": [],
"disabled_components": {}
},
"source": {
"url": "https://github.com/tomzx/php-semver-checker",
"host": "github.com",
"name": "php-semver-checker",
"owner": "tomzx"
},
"metrics": {
"overall": {
"key": "overall",
"band": "weak",
"name": "Overall health",
"note": "The weighted overall 47 is calibrated to 45 on the published index scale (record calibration 2026-08-02). Abandonment Policy applies a 85% multiplier to weighted overall health.",
"notes": [
{
"code": "overall_calibration",
"params": {
"raw": 47,
"calibrated": 45,
"calibration": "2026-08-02"
}
},
{
"code": "abandonment_overall_adjustment",
"params": {
"cap": 0,
"pct": 85
}
}
],
"value": 38,
"inputs": {
"security": 44,
"vitality": 28,
"community": 54,
"governance": 53,
"calibration": "2026-08-02",
"engineering": 62,
"ai_readiness": 30,
"abandonment_cap": null,
"abandonment_state": "at_risk",
"weighted_overall_raw": 47,
"abandonment_multiplier": 85,
"weighted_overall_before_abandonment": 45,
"overall_after_abandonment_multiplier": 38
},
"components": []
},
"categories": [
{
"key": "vitality",
"band": "at_risk",
"name": "Vitality",
"value": 28,
"weight": 0.21,
"metrics": [
{
"key": "development_activity",
"band": "critical",
"name": "Development activity",
"note": null,
"notes": [],
"value": 14,
"inputs": {
"commits_last_year": 8,
"human_commit_share": 0.78,
"days_since_last_push": 181,
"active_weeks_last_year": 2
},
"components": [
{
"key": "push_recency",
"name": "Push recency",
"detail": "last push 181 days ago",
"points": 3.6,
"status": "partial",
"details": [
{
"code": "push_recency",
"params": {
"days": 181
}
}
],
"max_points": 36
},
{
"key": "commit_cadence",
"name": "Commit cadence",
"detail": "2/52 weeks with commits",
"points": 1.4,
"status": "partial",
"details": [
{
"code": "commit_cadence_weeks",
"params": {
"weeks": 2
}
}
],
"max_points": 36
},
{
"key": "commit_volume",
"name": "Commit volume",
"detail": "8 commits in the last year",
"points": 8.6,
"status": "partial",
"details": [
{
"code": "commits_last_year",
"params": {
"count": 8
}
}
],
"max_points": 18
},
{
"key": "openssf_scorecard_maintained",
"name": "OpenSSF Scorecard: Maintained",
"detail": "0 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
}
]
},
{
"key": "release_discipline",
"band": "weak",
"name": "Release discipline",
"note": null,
"notes": [],
"value": 49,
"inputs": {
"releases_count": 25,
"latest_release_tag": "v0.17.0",
"releases_from_tags": false,
"days_since_latest_release": 279,
"mean_days_between_releases": 384
},
"components": [
{
"key": "ships_releases",
"name": "Ships releases",
"detail": "25 releases published",
"points": 27,
"status": "met",
"details": [
{
"code": "releases_published",
"params": {
"count": 25
}
}
],
"max_points": 27
},
{
"key": "release_recency",
"name": "Release recency",
"detail": "latest release 279 days ago",
"points": 16.2,
"status": "partial",
"details": [
{
"code": "release_recency",
"params": {
"days": 279
}
}
],
"max_points": 36
},
{
"key": "release_cadence",
"name": "Release cadence",
"detail": "a release every ~384 days",
"points": 5.4,
"status": "partial",
"details": [
{
"code": "release_cadence",
"params": {
"gap": 384
}
}
],
"max_points": 27
},
{
"key": "openssf_scorecard_signed_releases",
"name": "OpenSSF Scorecard: Signed-Releases",
"detail": "Project has not signed or included provenance with any releases.",
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
}
]
},
{
"key": "abandonment",
"band": "excellent",
"name": "Abandonment",
"note": null,
"notes": [],
"value": 85,
"inputs": {
"cap": null,
"state": "at_risk",
"guards": [
"recent_release"
],
"signals": [
"unanswered_contributions",
"issue_rot",
"scorecard_unmaintained"
],
"red_flag": true,
"multiplier_pct": 85,
"declared_reason": null,
"unverified_reason": null,
"unanswered_open_prs": 9,
"unanswered_open_issues": 13,
"days_since_last_merged_pr": 1304,
"days_since_last_human_commit": 181,
"days_since_last_human_commit_is_floor": false
},
"components": [
{
"key": "project_is_still_maintained",
"name": "Project is still maintained",
"detail": "no human commit for 181 days; 3 unmet obligation(s): pull requests unanswered, issues unanswered, Scorecard reports it unmaintained",
"points": 85,
"status": "partial",
"details": [
{
"code": "abandonment_flagged",
"params": {
"days": 181,
"count": 3,
"signals": "pull requests unanswered, issues unanswered, Scorecard reports it unmaintained"
}
}
],
"max_points": 100
}
]
}
],
"description": "Is the project alive — is code being written and are releases shipping?"
},
{
"key": "community",
"band": "moderate",
"name": "Community & Adoption",
"value": 54,
"weight": 0.17,
"metrics": [
{
"key": "popularity",
"band": "moderate",
"name": "Popularity & adoption",
"note": null,
"notes": [],
"value": 61,
"inputs": {
"forks": 28,
"stars": 436,
"watchers": 13,
"growth_state": "unverified",
"growth_factor_pct": 100,
"growth_unverified_reason": "no_history"
},
"components": [
{
"key": "stars",
"name": "Stars",
"detail": "436 stars",
"points": 42.8,
"status": "partial",
"details": [
{
"code": "stars",
"params": {
"count": 436
}
}
],
"max_points": 60
},
{
"key": "forks",
"name": "Forks",
"detail": "28 forks",
"points": 11.9,
"status": "partial",
"details": [
{
"code": "forks",
"params": {
"count": 28
}
}
],
"max_points": 25
},
{
"key": "watchers",
"name": "Watchers",
"detail": "13 watchers",
"points": 6,
"status": "partial",
"details": [
{
"code": "watchers",
"params": {
"count": 13
}
}
],
"max_points": 15
}
]
},
{
"key": "community_health",
"band": "moderate",
"name": "Community health",
"note": null,
"notes": [],
"value": 50,
"inputs": {
"has_readme": true,
"has_license": true,
"readme_badges": 6,
"has_contributing": false,
"has_issue_template": false,
"has_code_of_conduct": false,
"readme_badge_services": [
"poser.pugx.org",
"shields.io"
],
"has_pull_request_template": false
},
"components": [
{
"key": "readme",
"name": "README",
"detail": null,
"points": 22.5,
"status": "met",
"details": [],
"max_points": 22.5
},
{
"key": "license",
"name": "License",
"detail": "recognized license (MIT)",
"points": 22.5,
"status": "met",
"details": [
{
"code": "license_standard",
"params": {}
},
{
"code": "license_spdx",
"params": {
"spdx": "MIT"
}
}
],
"max_points": 22.5
},
{
"key": "contributing_guide",
"name": "CONTRIBUTING guide",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 18
},
{
"key": "code_of_conduct",
"name": "Code of conduct",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 13.5
},
{
"key": "issue_template",
"name": "Issue template",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.2
},
{
"key": "pr_template",
"name": "PR template",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 6.3
}
]
},
{
"key": "ecosystem_adoption",
"band": "weak",
"name": "Ecosystem adoption (downloads)",
"note": null,
"notes": [],
"value": 49,
"inputs": {
"packages": [
"tomzx/php-semver-checker"
],
"dependents": 3,
"ecosystems": "packagist",
"total_downloads": 241787,
"monthly_downloads": 2272
},
"components": [
{
"key": "monthly_downloads",
"name": "Monthly downloads",
"detail": "2,272 downloads/month across packagist",
"points": 44.8,
"status": "partial",
"details": [
{
"code": "downloads_monthly",
"params": {
"count": 2272,
"ecosystems": "packagist"
}
}
],
"max_points": 80
},
{
"key": "registry_dependents",
"name": "Registry dependents",
"detail": "3 packages depend on it",
"points": 4,
"status": "partial",
"details": [
{
"code": "registry_dependents",
"params": {
"count": 3
}
}
],
"max_points": 20
}
]
}
],
"description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
},
{
"key": "governance",
"band": "moderate",
"name": "Sustainability & Governance",
"value": 53,
"weight": 0.23,
"metrics": [
{
"key": "maintainer_resilience",
"band": "at_risk",
"name": "Maintainer resilience (bus factor)",
"note": null,
"notes": [],
"value": 24,
"inputs": {
"bus_factor": 1,
"contributors_sampled": 6,
"top_contributor_share": 0.833
},
"components": [
{
"key": "bus_factor",
"name": "Bus factor",
"detail": "1 contributor(s) cover half of all commits",
"points": 9,
"status": "partial",
"details": [
{
"code": "bus_factor",
"params": {
"count": 1
}
}
],
"max_points": 54
},
{
"key": "commit_distribution",
"name": "Commit distribution",
"detail": "top contributor authored 83% of commits",
"points": 3.8,
"status": "partial",
"details": [
{
"code": "top_contributor_share",
"params": {
"share": 83
}
}
],
"max_points": 22.5
},
{
"key": "contributor_breadth",
"name": "Contributor breadth",
"detail": "6 contributors",
"points": 8.1,
"status": "partial",
"details": [
{
"code": "contributors_sampled",
"params": {
"count": 6
}
}
],
"max_points": 13.5
},
{
"key": "openssf_scorecard_contributors",
"name": "OpenSSF Scorecard: Contributors",
"detail": "project has 1 contributing companies or organizations -- score normalized to 3",
"points": 3,
"status": "partial",
"details": [],
"max_points": 10
}
]
},
{
"key": "responsiveness",
"band": "weak",
"name": "Issue & PR responsiveness",
"note": "Excluded from scoring (no data or not applicable): Newcomer PR acceptance. Remaining weights renormalized.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"newcomer_pr_acceptance"
]
}
},
{
"code": "weights_renormalized",
"params": {}
}
],
"value": 47,
"inputs": {
"merged_prs": 30,
"open_issues": 30,
"closed_issues": 69,
"prs_merged_7d": 0,
"prs_decided_7d": 0,
"prs_merged_30d": 0,
"prs_decided_30d": 0,
"issue_closed_ratio": 0.697,
"closed_unmerged_prs": 46,
"first_time_authors_30d": 0,
"first_time_prs_merged_30d": 0,
"first_time_prs_decided_30d": 0
},
"components": [
{
"key": "issue_resolution",
"name": "Issue resolution",
"detail": "70% of issues closed",
"points": 29.3,
"status": "partial",
"details": [
{
"code": "issues_closed_share",
"params": {
"share": 70
}
}
],
"max_points": 42
},
{
"key": "pr_acceptance",
"name": "PR acceptance",
"detail": "30/76 decided PRs merged",
"points": 11.8,
"status": "partial",
"details": [
{
"code": "decided_prs_merged",
"params": {
"merged": 30,
"decided": 76
}
}
],
"max_points": 30
},
{
"key": "newcomer_pr_acceptance",
"name": "Newcomer PR acceptance",
"detail": "no first-time contributor's PR decided in 30d",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_newcomer_prs",
"params": {
"days": 30
}
}
],
"max_points": 13
},
{
"key": "openssf_scorecard_code_review",
"name": "OpenSSF Scorecard: Code-Review",
"detail": "Found 0/16 approved changesets -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 15
}
]
},
{
"key": "stewardship",
"band": "moderate",
"name": "Ownership & stewardship",
"note": "Excluded from scoring (no data or not applicable): Verified domain. Remaining weights renormalized.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"verified_domain"
]
}
},
{
"code": "weights_renormalized",
"params": {}
}
],
"value": 62,
"inputs": {
"followers": 122,
"owner_type": "User",
"is_verified": null,
"owner_login": "tomzx",
"public_repos": 101,
"account_age_days": 6036
},
"components": [
{
"key": "ownership_backing",
"name": "Ownership backing",
"detail": "personal (user) account",
"points": 10,
"status": "partial",
"details": [
{
"code": "owner_personal",
"params": {}
}
],
"max_points": 30
},
{
"key": "verified_domain",
"name": "Verified domain",
"detail": "not applicable to user accounts",
"points": 0,
"status": "excluded",
"details": [
{
"code": "not_applicable_to_user_accounts",
"params": {}
}
],
"max_points": 20
},
{
"key": "owner_reach",
"name": "Owner reach",
"detail": "122 followers of tomzx",
"points": 15,
"status": "partial",
"details": [
{
"code": "owner_followers",
"params": {
"count": 122,
"login": "tomzx"
}
}
],
"max_points": 25
},
{
"key": "track_record",
"name": "Track record",
"detail": "101 public repos, account ~16 yr old",
"points": 25,
"status": "met",
"details": [
{
"code": "public_repos",
"params": {
"count": 101
}
},
{
"code": "account_age_years",
"params": {
"years": 16
}
}
],
"max_points": 25
}
]
},
{
"key": "package_maintenance",
"band": "excellent",
"name": "Package maintenance",
"note": null,
"notes": [],
"value": 91,
"inputs": {
"packages": [
"tomzx/php-semver-checker"
],
"ecosystems": "packagist",
"any_deprecated": false,
"min_days_since_publish": 279
},
"components": [
{
"key": "published_resolvable",
"name": "Published & resolvable",
"detail": "1 package(s) on packagist",
"points": 25,
"status": "met",
"details": [
{
"code": "packages_published",
"params": {
"count": 1,
"ecosystems": "packagist"
}
}
],
"max_points": 25
},
{
"key": "publish_recency",
"name": "Publish recency",
"detail": "latest publish 279 days ago",
"points": 26,
"status": "partial",
"details": [
{
"code": "publish_recency",
"params": {
"days": 279
}
}
],
"max_points": 35
},
{
"key": "version_history",
"name": "Version history",
"detail": "25 published versions",
"points": 20,
"status": "met",
"details": [
{
"code": "published_versions",
"params": {
"count": 25
}
}
],
"max_points": 20
},
{
"key": "not_deprecated",
"name": "Not deprecated",
"detail": "active, not deprecated or yanked",
"points": 20,
"status": "met",
"details": [
{
"code": "package_not_deprecated",
"params": {}
}
],
"max_points": 20
}
]
}
],
"description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
},
{
"key": "engineering",
"band": "moderate",
"name": "Engineering Quality",
"value": 62,
"weight": 0.19,
"metrics": [
{
"key": "engineering_practices",
"band": "moderate",
"name": "Engineering practices",
"note": null,
"notes": [],
"value": 54,
"inputs": {
"has_ci": true,
"has_tests": true,
"has_editorconfig": true,
"has_linter_config": false,
"has_precommit_config": false
},
"components": [
{
"key": "ci_workflows",
"name": "CI workflows",
"detail": "1 workflow(s)",
"points": 24,
"status": "met",
"details": [
{
"code": "ci_workflows",
"params": {
"count": 1
}
}
],
"max_points": 24
},
{
"key": "tests_present",
"name": "Tests present",
"detail": null,
"points": 24,
"status": "met",
"details": [],
"max_points": 24
},
{
"key": "linter_config",
"name": "Linter config",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 16
},
{
"key": "pre_commit_hooks",
"name": "Pre-commit hooks",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 9.6
},
{
"key": "editorconfig",
"name": ".editorconfig",
"detail": null,
"points": 6.4,
"status": "met",
"details": [],
"max_points": 6.4
},
{
"key": "openssf_scorecard_ci_tests",
"name": "OpenSSF Scorecard: CI-Tests",
"detail": "0 out of 15 merged PRs checked by a CI test -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 20
}
]
},
{
"key": "documentation",
"band": "good",
"name": "Documentation",
"note": null,
"notes": [],
"value": 75,
"inputs": {
"topics": [
"php",
"semver",
"inspection",
"ruleset",
"analyzer"
],
"has_wiki": false,
"homepage": null,
"has_readme": true,
"has_docs_dir": true,
"has_description": true
},
"components": [
{
"key": "readme",
"name": "README",
"detail": null,
"points": 30,
"status": "met",
"details": [],
"max_points": 30
},
{
"key": "documentation_directory",
"name": "Documentation directory",
"detail": null,
"points": 25,
"status": "met",
"details": [],
"max_points": 25
},
{
"key": "documentation_homepage_site",
"name": "Documentation / homepage site",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 15
},
{
"key": "repository_description",
"name": "Repository description",
"detail": null,
"points": 10,
"status": "met",
"details": [],
"max_points": 10
},
{
"key": "topics",
"name": "Topics",
"detail": "5 topics",
"points": 10,
"status": "met",
"details": [
{
"code": "topics_count",
"params": {
"count": 5
}
}
],
"max_points": 10
},
{
"key": "wiki",
"name": "Wiki",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
}
]
}
],
"description": "Are baseline engineering and documentation practices in place?"
},
{
"key": "security",
"band": "weak",
"name": "Security",
"value": 44,
"weight": 0.16,
"metrics": [
{
"key": "security_posture",
"band": "weak",
"name": "Security posture",
"note": "Excluded from scoring (no data or not applicable): Branch-Protection, Packaging. Remaining weights renormalized.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"branch_protection",
"packaging"
]
}
},
{
"code": "weights_renormalized",
"params": {}
}
],
"value": 35,
"inputs": {
"source": "openssf_scorecard",
"checks_evaluated": 16,
"scorecard_version": "v5.5.0",
"checks_inconclusive": 2,
"scorecard_aggregate": 3.5
},
"components": [
{
"key": "binary_artifacts",
"name": "Binary-Artifacts",
"detail": "no binaries found in the repo",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
},
{
"key": "branch_protection",
"name": "Branch-Protection",
"detail": "internal error: error during branchesHandler.setup: internal error: some github tokens can't read classic branch protection rules: https://github.com/ossf/scorecard-action/blob/main/docs/authentication/fine-grained-auth-token.md",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 7.5
},
{
"key": "ci_tests",
"name": "CI-Tests",
"detail": "0 out of 15 merged PRs checked by a CI test -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 2.5
},
{
"key": "cii_best_practices",
"name": "CII-Best-Practices",
"detail": "no effort to earn an OpenSSF best practices badge detected",
"points": 0,
"status": "missed",
"details": [],
"max_points": 2.5
},
{
"key": "code_review",
"name": "Code-Review",
"detail": "Found 0/16 approved changesets -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "contributors",
"name": "Contributors",
"detail": "project has 1 contributing companies or organizations -- score normalized to 3",
"points": 0.8,
"status": "partial",
"details": [],
"max_points": 2.5
},
{
"key": "dangerous_workflow",
"name": "Dangerous-Workflow",
"detail": "no dangerous workflow patterns detected",
"points": 10,
"status": "met",
"details": [],
"max_points": 10
},
{
"key": "dependency_update_tool",
"name": "Dependency-Update-Tool",
"detail": "update tool detected",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
},
{
"key": "fuzzing",
"name": "Fuzzing",
"detail": "project is not fuzzed",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "license",
"name": "License",
"detail": "license file detected",
"points": 2.5,
"status": "met",
"details": [],
"max_points": 2.5
},
{
"key": "maintained",
"name": "Maintained",
"detail": "0 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "packaging",
"name": "Packaging",
"detail": "packaging workflow not detected",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 5
},
{
"key": "pinned_dependencies",
"name": "Pinned-Dependencies",
"detail": "dependency not pinned by hash detected -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "sast",
"name": "SAST",
"detail": "SAST tool is not run on all commits -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "security_policy",
"name": "Security-Policy",
"detail": "security policy file not detected",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "signed_releases",
"name": "Signed-Releases",
"detail": "Project has not signed or included provenance with any releases.",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "token_permissions",
"name": "Token-Permissions",
"detail": "detected GitHub workflow tokens with excessive permissions",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "vulnerabilities",
"name": "Vulnerabilities",
"detail": "4 existing vulnerabilities detected",
"points": 4.5,
"status": "partial",
"details": [],
"max_points": 7.5
}
]
},
{
"key": "dependency_advisories",
"band": "excellent",
"name": "Dependency advisories",
"note": "Excluded from scoring (no data or not applicable): Indirect dependencies free of known advisories. Remaining weights renormalized. Matched 42 resolved dependencies against OSV. This repository publishes no package the index resolves, so the repository dependency graph was assessed instead. That graph mixes development and test pins with shipped dependencies, so only the declared runtime dependencies are scored; transitive findings are reported as context and excluded from the score. Reachability is not analyzed.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"indirect_dependencies_free_of_known_advisories"
]
}
},
{
"code": "weights_renormalized",
"params": {}
},
{
"code": "advisories_scope_repository",
"params": {
"assessed": 42
}
},
{
"code": "advisories_repo_graph_caveat",
"params": {}
},
{
"code": "advisories_reachability",
"params": {}
}
],
"value": 80,
"inputs": {
"source": "osv",
"advisories": 4,
"affected_packages": 2,
"assessed_packages": 42,
"unassessed_packages": 0,
"affected_by_severity": "high 1, moderate 1",
"direct_affected_packages": 1
},
"components": [
{
"key": "direct_dependencies_free_of_known_advisories",
"name": "Direct dependencies free of known advisories",
"detail": "1 affected: symfony/yaml 6.4.26 (moderate 5.3)",
"points": 20.2,
"status": "partial",
"details": [
{
"code": "advisories_affected",
"params": {
"count": 1,
"packages": "symfony/yaml 6.4.26 (moderate 5.3)"
}
}
],
"max_points": 35
},
{
"key": "indirect_dependencies_free_of_known_advisories",
"name": "Indirect dependencies free of known advisories",
"detail": "transitive set not separable from development and test dependencies in this scope",
"points": 0,
"status": "excluded",
"details": [
{
"code": "advisories_scope_not_separable",
"params": {}
}
],
"max_points": 25
},
{
"key": "no_advisories_left_outstanding",
"name": "No advisories left outstanding",
"detail": "no advisory has been public longer than 90 days",
"points": 40,
"status": "met",
"details": [
{
"code": "advisories_none_stale",
"params": {
"days": 90
}
}
],
"max_points": 40
}
]
},
{
"key": "malicious_dependencies",
"band": "exceptional",
"name": "Malicious dependencies",
"note": null,
"notes": [],
"value": 100,
"inputs": {
"source": "osv",
"meaning": "reported as a malicious package by the OpenSSF corpus; the remedy is removal or moving off the compromised name, never an upgrade of the same artifact. Versions the registry has since pulled are listed but not scored",
"packages": [],
"red_flag": false,
"assessed_packages": 42,
"malicious_packages": 0,
"direct_malicious_packages": 0,
"withdrawn_malicious_packages": 0,
"installable_malicious_packages": 0
},
"components": [
{
"key": "no_dependency_reported_as_a_malicious_package",
"name": "No dependency reported as a malicious package",
"detail": "no dependency is reported as a malicious package",
"points": 100,
"status": "met",
"details": [
{
"code": "no_malicious_dependencies",
"params": {}
}
],
"max_points": 100
}
]
},
{
"key": "high_risk_jurisdiction_exposure",
"band": "exceptional",
"name": "High-Risk Jurisdiction Exposure",
"note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
"notes": [
{
"code": "jurisdiction_evidence_limits",
"params": {}
}
],
"value": 100,
"inputs": {
"meaning": "self-published location evidence; not nationality or citizenship",
"red_flag": false,
"exposures": [],
"policy_countries": [
"Russia",
"Iran",
"North Korea"
],
"commit_weight_rule": {
"min_commits": 50,
"min_commit_share": 0.1
},
"review_only_matches": 0,
"below_threshold_exposures": [],
"assessed_self_published_locations": 16
},
"components": [
{
"key": "policy_exposure_multiplier",
"name": "Policy exposure multiplier",
"detail": "no confirmed policy-scope location match",
"points": 100,
"status": "met",
"details": [
{
"code": "jurisdiction_no_match",
"params": {}
}
],
"max_points": 100
}
]
}
],
"description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
},
{
"key": "ai_readiness",
"band": "at_risk",
"name": "AI Readiness",
"value": 30,
"weight": 0.04,
"metrics": [
{
"key": "ai_agent_context",
"band": "critical",
"name": "Agent context & guidance",
"note": null,
"notes": [],
"value": 5,
"inputs": {
"has_llms_txt": false,
"legible_history_share": 0.09,
"agent_instruction_files": [],
"agent_instruction_max_bytes": null
},
"components": [
{
"key": "agent_instructions",
"name": "Agent instructions",
"detail": "no CLAUDE.md / AGENTS.md / editor rules",
"points": 0,
"status": "missed",
"details": [
{
"code": "no_agent_instructions",
"params": {}
}
],
"max_points": 45
},
{
"key": "machine_readable_docs_llms_txt",
"name": "Machine-readable docs (llms.txt)",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 15
},
{
"key": "legible_commit_history",
"name": "Legible commit history",
"detail": "7 of 78 human commits state their intent (structured subject or explanatory body)",
"points": 4.8,
"status": "partial",
"details": [
{
"code": "legible_history",
"params": {
"legible": 7,
"sampled": 78
}
}
],
"max_points": 40
}
]
},
{
"key": "ai_verify_loop",
"band": "weak",
"name": "Verify loop (build / test / typecheck)",
"note": null,
"notes": [],
"value": 40,
"inputs": {
"has_nix": false,
"has_tests": true,
"lockfiles": [
"composer.lock"
],
"has_dockerfile": false,
"typed_language": false,
"bootstrap_files": [],
"has_devcontainer": false,
"has_linter_config": false,
"typecheck_configs": [],
"agent_commit_share": 0,
"toolchain_manifests": [],
"dependency_bot_commit_share": 0.22
},
"components": [
{
"key": "one_command_bootstrap",
"name": "One-command bootstrap",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 18
},
{
"key": "automated_tests",
"name": "Automated tests",
"detail": null,
"points": 22,
"status": "met",
"details": [],
"max_points": 22
},
{
"key": "lint_format_config",
"name": "Lint / format config",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 11
},
{
"key": "static_type_checking",
"name": "Static type checking",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 11
},
{
"key": "reproducible_environment",
"name": "Reproducible environment",
"detail": "lockfile",
"points": 10,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": "lockfile"
}
}
],
"max_points": 10
},
{
"key": "demonstrated_agent_practice",
"name": "Demonstrated agent practice",
"detail": "no agent-authored commits among the last 100",
"points": 0,
"status": "missed",
"details": [
{
"code": "no_agent_authored_commits",
"params": {
"sampled": 100
}
}
],
"max_points": 10
},
{
"key": "automated_maintenance",
"name": "Automated maintenance",
"detail": "22 of the last 100 commits are automated dependency updates",
"points": 8,
"status": "met",
"details": [
{
"code": "dependency_bot_commits",
"params": {
"count": 22,
"sampled": 100
}
}
],
"max_points": 8
},
{
"key": "openssf_scorecard_pinned_dependencies",
"name": "OpenSSF Scorecard: Pinned-Dependencies",
"detail": "dependency not pinned by hash detected -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
}
]
},
{
"key": "ai_code_legibility",
"band": "moderate",
"name": "Code legibility for models",
"note": null,
"notes": [],
"value": 55,
"inputs": {
"primary_language": "PHP",
"largest_source_bytes": 22524,
"source_files_sampled": 178,
"oversized_source_files": 0
},
"components": [
{
"key": "type_checkable_code",
"name": "Type-checkable code",
"detail": "PHP without a type-check config",
"points": 0,
"status": "missed",
"details": [
{
"code": "no_typecheck_config_language",
"params": {
"language": "PHP"
}
}
],
"max_points": 45
},
{
"key": "manageable_file_sizes",
"name": "Manageable file sizes",
"detail": "0/178 source files over 60KB",
"points": 55,
"status": "met",
"details": [
{
"code": "oversized_source_files",
"params": {
"kb": 60,
"sampled": 178,
"oversized": 0
}
}
],
"max_points": 55
}
]
}
],
"description": "How well is the repo equipped to be developed and maintained with AI coding agents? Carries a deliberately small weight: agent tooling is a real maintenance signal, but its absence must never gate the top of the scale (calibration saturates at raw 91, so 100/100 remains reachable with AI Readiness at zero)."
}
],
"classification": {
"top": [
"library",
"application"
],
"labels": [
"library",
"cli"
],
"scores": {
"cli": 14,
"library": 22
},
"primary": "library",
"evidence": [
{
"tier": "declared",
"label": "cli",
"source": "composer.bin",
"weight": 10
},
{
"tier": "declared",
"label": "library",
"source": "composer.type:library",
"weight": 10
},
{
"tier": "distribution",
"label": "library",
"source": "registry:packagist",
"weight": 6
},
{
"tier": "distribution",
"label": "library",
"source": "registry_type:library",
"weight": 6
},
{
"tier": "dependencies",
"label": "cli",
"source": "dep:symfony/console",
"weight": 4
}
],
"artifacts": [
{
"path": "composer.json",
"labels": [
"cli",
"library"
],
"ecosystem": "packagist"
}
],
"confidence": "high",
"host_extension": false,
"runs_as_process": true,
"consumed_by_code": true
},
"metrics_version": "2.5.0"
},
"warnings": [
"Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token"
],
"report_type": "repository",
"generated_at": "2026-08-05T09:23:32.234309Z",
"schema_version": "0.31.0",
"badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/t/tomzx/php-semver-checker.svg",
"full_name": "tomzx/php-semver-checker",
"license_state": "standard",
"license_spdx": "MIT"
}