Package Health

klisl/yii2-json-behavior

The package has a clear README, matching source tree, and MIT licensing. Its small dependency surface and lack of install scripts are reassuring, but the repository has no security policy.

Latest 1.3PackagistPackagist

44%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

81

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historydanger

The package has had only two releases, both in April 2018, with no release in more than eight years. This is strong evidence of abandonment risk for a dependency.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long release gap and indicating no current maintenance.

Repo popularitycaution

Three stars, no forks, and no watchers provide little supporting evidence of broad community review or backup maintenance. Popularity is only supporting evidence, so this is a mild concern rather than a verdict.

Security policycaution

The linked repository has no security policy, reducing transparency about how vulnerabilities would be reported or handled. The package's small scope limits the effect but does not remove the gap.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Sergey Klimenchuk

Direct Dependencies

DependencyLast ReleaseScore
yiisoft/yii2
Version ~2.0.0
—
—

Weekly Downloads

Info

Last Published
8 years ago
Created
8 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform