Package Health

phpdot/webauthn

This is a newly published, explicitly experimental package with only one release and no demonstrated historical maintenance, so adopting it carries meaningful maturity and API-stability risk. The package is nevertheless transparently linked to a matching organization-owned repository, has a clear MIT license, a substantial README, coherent Composer dependencies, and repository tests that compensate for the absence of tests in the artifact. It is not deprecated or archived, and the lack of recent commit activity is difficult to interpret because the package is only hours old; however, there is no security policy or security-scanning tooling, and the repository has no workflow automation. Pinning the exact version and reviewing updates is advisable.

Latest v0.3.0PackagistPackagist

62%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

72

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Omar Hamdan

Direct Dependencies

DependencyLast ReleaseScore
psr/clock
Version ^1.0
phpdot/contracts
Version ^0.3
web-auth/cose-lib
Version ^4.7
symfony/serializer
Version ^8.0
web-auth/webauthn-lib
Version ^5.3

Weekly Downloads

Info

Last Published
3 days ago
Created
3 days ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform