Composer/Packagist
The PHP Package Repository
- Also known as
- composer-packagist
What is Composer/Packagist?
Packagist is the main Composer repository that aggregates public PHP packages installable with Composer. It provides a centralized registry where developers can publish and discover PHP packages.
Composer/Packagist pricing
We don't have Composer/Packagist's full plan breakdown yet (its pricing page resisted automated reading). Here's what we could confirm. Always check live pricing for exact numbers.
What Composer/Packagist does
The capabilities that matter for package registries, normalised so it lines up with every alternative. “-” means we haven't confirmed it, not that it's missing.
- Role
- Public registry
- Ecosystem / language
- PHP
- Deployment
- SaaS
- Package formats supported
- Single ecosystem
- Private / scoped packages
- ✓
- Upstream proxy / caching
- -
- Lockfile / deterministic installs
- -
- Workspaces / monorepo
- -
- Content-addressable store
- -
- Supply-chain integrity
- -
- Vulnerability / licence scanning
- -
- Openness
- -
- Pricing model
- Free / OSS
Platform & deployment
Independently observed- CLI
- Web
- Cloud / SaaS
Composer/Packagist alternatives
Other package registries we track, ranked by the same independent score.
- BunA fast all-in-one JavaScript runtimelow · 19%
- uvAn extremely fast Python package and project manager, written in Rust.low · 40%
- pnpmFast, disk space efficient package managerlow · 28%
- pipThe package installer for Pythonlow · 26%
- HomebrewThe Package Manager for Everywherelow · 18%
- PoetryPython dependency management and packaging made easylow · 32%
The Vioscale score: one lens on the evidence
Not user reviews and not a paid placement: a confidence-weighted blend of the independent signals below (adoption, activity, security posture, and more), which you can sort and re-weight yourself. Vendors can correct their listing but can never move their rank, and stars are weighted low as a vanity metric. It is one way to read the evidence for Composer/Packagist, not the verdict.
| Signal | Score | Weight | Contribution | Evidence |
|---|---|---|---|---|
| Release Cadence | 97 | 10.00 | 966.7 | ✓ |
| Github Activity | 35 | 16.00 | 561.1 | ✓ |
| Capabilities | 29 | 14.00 | 404.7 | ✓ |
| Github Stars | 84 | 4.00 | 337.3 | ✓ |
| Integrations | 0 | 8.00 | 0.0 | - |
| Security Posture | 0 | 26.00 | 0.0 | - |
| Package Downloads | 0 | 22.00 | 0.0 | - |
| Stackoverflow Activity | 0 | 8.00 | 0.0 | - |
Computed . Re-weight it by intent, or see the full method.
All data & sourcesshow ↓
Every value we hold, with its source, retrieval date, and confidence. This is the evidence behind the score: don't trust it, verify it.
Activity
| Attribute | Value | Evidence |
|---|---|---|
| Commits last 30d | 12 | mediumsource · 2026-08-03 · 65% |
Adoption
| Attribute | Value | Evidence |
|---|---|---|
| Github stars | 29,499 | highsource · 2026-08-03 · 90% |
Features
| Attribute | Value | Evidence |
|---|---|---|
| Capabilities | {"role":"public_registry","ecosystem":"php","deployment":"saas","pricing_model":"free","package_formats":"single","private_packages":true} | mediumsource · 2026-08-03 · 60% |
Language
| Attribute | Value | Evidence |
|---|---|---|
| Primary | PHP | highsource · 2026-08-03 · 90% |
License
| Attribute | Value | Evidence |
|---|---|---|
| Spdx | MIT | highsource · 2026-08-03 · 95% |
Pricing
Release
| Attribute | Value | Evidence |
|---|---|---|
| Cadence days | 6 | mediumsource · 2026-08-03 · 70% |
Reliability
| Attribute | Value | Evidence |
|---|---|---|
| Status page | Yes | mediumsource · 2026-08-03 · 60% |