Package Health

printwtf/json-poxo

The artifact has a clear README, tests, MIT license file, and no install-time scripts. Its small public footprint, absent security policy, and nearly decade-long lack of maintenance make future fixes and support unlikely.

Latest 1.0.8PackagistPackagist

43%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

25

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

72

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Release historydanger

The latest release was in November 2015, with no releases in the last 12 months; this indicates the package has been inactive for nearly 11 years.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last 3 months, consistent with the long release gap and indicating no current maintenance.

Maintainerscaution

Only one registry account has publish access. This is a thin publishing base, and the repository is user-owned rather than organization-backed, although access records do not prove who actively maintains the code.

Repo popularitycaution

The repository has zero stars and forks and only one watcher, providing little evidence of an active user or contributor community; popularity is supporting evidence rather than decisive on its own.

Repo toolingcaution

Composer is used for builds, providing ordinary ecosystem tooling, but no security scanning is configured; the latter is already reflected in the repository's security-policy and maintenance concerns.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Toshiro Sugii

Direct Dependencies

DependencyLast ReleaseScore
symfony/symfony
Version 2.7.*
xamin/handlebars.php
Version 0.10.*

Weekly Downloads

Info

Last Published
10 years ago
Created
11 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform