Package Health

jdesrosiers/silex-jms-serializer-provider

Documentation and packaging are solid, with tests, release notes, and a clear license. The project is archived, has had no release in nearly 10 years, and shows no recent commits, so pinning this dependency carries substantial abandonment risk.

Latest v1.1.0PackagistPackagist

12%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

50

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Using this package? Scan for Free

Health Score Breakdown

Registry deprecationdanger

Packagist marks the entire package as abandoned, with no replacement specified. This is a severe adoption risk for a dependency, even though the assessed release is identified separately.

Release historydanger

The package has only 5 releases, with the latest published about 10 years ago and none in the last 12 months. This strongly indicates abandonment for a package intended as a framework integration.

Repo commit activitydanger

The repository had no commits and no active maintainers in the last 3 months. This confirms the lack of current maintenance rather than merely showing a slow release cadence.

Repository archiveddanger

The linked repository is archived, and its last push was about 6 years ago. Archived source indicates the project is no longer actively maintained.

Repo toolingcaution

The repository uses Composer for builds, which fits the package ecosystem. No security scanning is configured, a minor hygiene gap, but it does not outweigh the project’s archived status.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Jason Desrosiers

Direct Dependencies

DependencyLast ReleaseScore
silex/silex
Version ~2.0
—
—
jms/serializer
Version ~1.0
—
—

Weekly Downloads

Info

Last Published
10 years ago
Created
12 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform