Nikita,
I'm a bit worried that using this as a standard test suite may
(repeatedly?) give us a false sense of security to go ahead with
compatibility breaking changes.
Composer packages, almost by definition - tend to be of higher quality
than the 'average' PHP code (at the very least they're redistributable, but
arguably Composer users are more advanced than the average developer - even
more so those who publish packages). On top of that - probably the some of
the most redistributed pieces of code in the PHP space - aren't covered by
Composer at all (e.g. WordPress).
Is this scanner available in a form that users could run it against their code basis and have it report to a server, perhaps after showing what it would report?
This way, users and less polished code could be put to the same test.
-Clint