Skip to content

Packagist API

Composer package metadata for PHP libraries.
Status
Working
API key
Not needed
Browser calls
Server only
Latency
252 ms

Build snapshot, not live. One verifier run on , from the machine that built this site. How we check

Example request

GEThttps://repo.packagist.org/p2/monolog/monolog.json

Copy the request

Shell
curl -s 'https://repo.packagist.org/p2/monolog/monolog.json'

Response stored by the verifier

This is what repo.packagist.org answered when the verifier sent the request above on : HTTP 200, application/json. Arrays are cut to two items and long strings are shortened. It comes from the build snapshot.

application/json · stored
{
  "minified": "composer/2.0",
  "packages": {
    "monolog/monolog": [
      {
        "name": "monolog/monolog",
        "description": "Sends your logs to files, sockets, inboxes, databases and various web services",
        "keywords": [],
        "homepage": "https://github.com/Seldaek/monolog",
        "version": "3.12.1",
        "version_normalized": "3.12.1.0",
        "license": [],
        "authors": [],
        "source": {},
        "dist": {},
        "type": "library",
        "support": {},
        "funding": [],
        "time": "2026-09-29T19:21:12+00:00"
      },
      {
        "version": "3.12.0",
        "version_normalized": "3.12.0.0",
        "source": {},
        "dist": {},
        "support": {},
        "time": "2026-09-09T08:34:20+00:00",
        "published-time": "2026-09-09T08:46:13+00:00"
      }
    ]
  },
  "security-advisories": [
    {
      "advisoryId": "PKSA-dmw8-jd8k-q3c6",
      "affectedVersions": ">=1.8.0,<1.12.0"
    }
  ]
}

Availability

Up 1 of 1 day checked · 30-day window

What counts as up for this API: an answer within five seconds, a 2xx status, and the JSON body must contain the field "packages".

Last check: — passed, HTTP 200 in 252 ms.

The check runs from our infrastructure, not from where you are. If you need certainty, send the request yourself above. How the verifier works.

Questions

Does the Packagist API need an API key?

No. The sample request on this page was answered without a key, token or account.

Can I call the Packagist API from the browser?

Not directly. repo.packagist.org did not send an Access-Control-Allow-Origin header to our verifier on Oct 3, 2026, so browsers block the response. Call it from a server or a serverless function.

Is the Packagist API working?

At the check on Oct 3, 2026 it returned HTTP 200 with the expected data in 252 ms. The status at the top of this page shows the most recent result we have.