Package Health

autisid/oidc-client

The package includes tests, a substantial README, matching source, and a clear Apache-2.0 license. Its repository has no security policy or scanning, leaving maintenance and security practices less transparent.

Latest 1.0.2PackagistPackagist

58%

Total Score

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

67

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historydanger

Only three releases exist, with the latest published in March 2023 and none in the last 12 months; this long inactivity raises abandonment risk despite the initially regular 19-day median interval.

Repo popularitycaution

The repository has zero stars and forks and only one watcher, providing little supporting evidence of a broad or active user base. Popularity is secondary, but this reinforces the maintenance concern.

Repo toolingcaution

Composer build tooling is present, but no security-scanning tools are reported, leaving a relevant transparency and maintenance gap for an authentication library.

Security policycaution

The repository has no security policy, reducing clarity about vulnerability reporting and response for a package handling OpenID Connect authentication.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
lcobucci/jwt
Version ~4.1
—
—
lcobucci/clock
Version ^2
—
—
web-token/jwt-core
Version ^3
—
—
cse/helpers-session
Version ^1
—
—

Weekly Downloads

Info

Last Published
3 years ago
Created
3 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform