PHPStan

Find Bugs Without Writing Tests

Also known as
phpstan

What is PHPStan?

Open-source static analyzer for PHP that scans codebases to find bugs without requiring tests. Runs locally on your machine or in CI/CD pipelines.

Independently observed

PHPStan pricing

Plans, per-tier features and add-ons, dated and linked to live pricing. Pricing changes often; always verify at source before you rely on it.

Pricing as of verify at live pricing ↗Independently observed
Open sourceFree tier

Free open-source base product; PHPStan Pro subscription available

Open Source

Free
Free

Free, open-source PHP static analyzer

PHPStan Pro

-

Premium package with web UI, auto-refresh, and continuous background analysis

What PHPStan does

The capabilities that matter for code quality tools, normalised so it lines up with every alternative. “-” means we haven't confirmed it, not that it's missing.

Core
Function
Static analyzer
Language scope
Single-language
Implementation language
-
Capability
Autofix
Config
Config model
Rule packs
Extensibility
Custom rules
-
Deployment
Deployment
Both
Delivery
Editor integration
-
CI / VCS gating
Insight
Code metrics
-
Performance
Incremental / monorepo aware
-
Licensing
Open-source
OSS
Commercial
Pricing model
Free
Independently observed

Platform & deployment

Independently observed
Platforms
  • CLI
  • Web

Integrations (3)

Independently observed
  • Symfony
  • Laravel
  • Doctrine

PHPStan alternatives

Other code quality tools we track, ranked by the same independent score.

Independent · unbought · dated

The Vioscale score: one lens on the evidence

Not user reviews and not a paid placement: a confidence-weighted blend of the independent signals below (adoption, activity, security posture, and more), which you can sort and re-weight yourself. Vendors can correct their listing but can never move their rank, and stars are weighted low as a vanity metric. It is one way to read the evidence for PHPStan, not the verdict.

Balanced composite 55 / 100
low · 26%
Signal contributions to the composite score
SignalScoreWeightContributionEvidence
Github Activity6318.001135.8
Release Cadence9910.00988.9
Capabilities2916.00462.5
Github Stars785.00391.2
Integrations178.00138.5
Security Posture013.000.0-
Package Downloads026.000.0-
Stackoverflow Activity012.000.0-

Computed . Re-weight it by intent, or see the full method.

All data & sourcesshow ↓

Every value we hold, with its source, retrieval date, and confidence. This is the evidence behind the score: don't trust it, verify it.

Activity

AttributeValueEvidence
Commits last 30d100mediumsource · 2026-08-03 · 65%

Adoption

AttributeValueEvidence
Github stars14,054highsource · 2026-08-03 · 90%

Features

AttributeValueEvidence
Capabilities{"autofix":false,"function":"static_analyzer","ci_gating":true,"deployment":"both","open_source":"oss","config_model":"rule_packs","pricing_model":"free","language_scope":"single_language"}mediumsource · 2026-08-03 · 60%

Integrations

AttributeValueEvidence
Count3mediumsource · 2026-08-03 · 60%

Language

AttributeValueEvidence
PrimaryPHPhighsource · 2026-08-03 · 90%

License

AttributeValueEvidence
SpdxMIThighsource · 2026-08-03 · 95%

Pricing

AttributeValueEvidence
Free tierYesmediumsource · 2026-08-03 · 60%
Modelopen_sourcemediumsource · 2026-08-03 · 60%
Price levelfreemediumsource · 2026-08-03 · 60%

Release

AttributeValueEvidence
Cadence days2mediumsource · 2026-08-03 · 70%