Package Health

byjg/serializer

Clear documentation, tests, and a permissive license support routine adoption. A single recent contributor and four unpinned workflow references leave modest maintenance and build-reproducibility reservations.

Latest 6.0.2PackagistPackagist

82%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

67

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

100

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

88

Health Score Breakdown

Repo bus factorcaution

One contributor made all two commits in the last three months, creating a concentrated maintenance path. The repository is user-owned rather than organization-owned, so there is no provided organizational backing to offset that concentration.

Repo commit activitycaution

There were two commits in the last three months, showing recent activity, but all activity came from one maintainer. This supports ongoing maintenance while leaving limited redundancy.

Workflow auditcaution

The only workflow was fully analyzed, uses job-level permissions, and has no high-confidence audit findings or untrusted checkout or injection sinks. All four action references are unpinned, which is a modest reproducibility and action-integrity hygiene concern.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
symfony/yaml
Version > 4

Weekly Downloads

Info

Last Published
2 months ago
Created
10 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform