Package Health

smartgroup/smart-serializer

The project includes tests, a usable README, and a clear MIT declaration. Its lone maintainer and zero commits in the last three months limit confidence in ongoing support.

Latest 2.0.0PackagistPackagist

65%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

88

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Dependency profilecaution

The library declares five runtime dependencies, including Doctrine and Symfony components. This is a meaningful dependency surface for a tiny serializer and adds maintenance coupling, though the dependencies are explicit.

Maintainerscaution

Only one registry account has publishing access. The linked repository is user-owned rather than organization-owned, so there is limited visible publishing redundancy.

Project backingcaution

The registry namespace is smartgroup, but the source repository is owned by an individual account. There is no provided evidence of organizational backing to offset the small maintainer base.

Release historycaution

The package has existed for about 3 years and 10 months, with five releases and one release in the last 12 months. This shows continued publishing, but the overall cadence is limited.

Repo commit activitycaution

The repository recorded zero commits and zero active maintainers in the last three months. That recent inactivity is a concrete support and abandonment concern.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

mtulikowski

Direct Dependencies

DependencyLast ReleaseScore
doctrine/orm
Version ^3.6.3
doctrine/common
Version ^3.5.0
symfony/routing
Version ^6.1
symfony/translation
Version ^6.1

Weekly Downloads

Info

Last Published
5 months ago
Created
3 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform