Package Health

php-serialization/valinor-serializer

The source includes tests, Psalm scanning, a matching README, and a clear MIT license. Those positives do not make this release a dependable long-term dependency.

Latest v0.1.0PackagistPackagist

8%

Total Score

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

56

Using this package? Scan for Free

Health Score Breakdown

Registry deprecationdanger

Packagist marks the entire package as abandoned, with no replacement named. This is a direct warning against taking a new dependency on it.

Release historydanger

This package has only one release, published nearly four years ago, with no releases in the last 12 months. That indicates an unmaintained release line.

Repository archiveddanger

The linked repository is archived, and its last push was nearly four years ago. Archived source provides strong evidence that maintenance has ended.

Version stabilitycaution

The only available version is v0.1.0 rather than a stable major release. This adds compatibility risk, especially alongside the package's lack of ongoing maintenance.

Workflow auditcaution

Both workflows were analyzed without injection or high-severity findings, but all 6 action references are unpinned. That leaves avoidable build-reproducibility and action-substitution risk.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

v.zanfir

Direct Dependencies

DependencyLast ReleaseScore
cuyz/valinor
Version ^0.14.0
php-serialization/serializer
Version ^0.3.0

Weekly Downloads

Info

Last Published
3 years ago
Created
3 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform