Package Health

syomkin/secure-jwt-bundle

Bundle to increase security of JWT based security

Latest 0.3.5PackagistPackagist

38%

Total Score

unhealthy

Risky: nearly five years without a release or commit leaves this security bundle effectively unmaintained.

Health Score Breakdown

Release historydanger

The latest release was on November 9, 2021, with no releases in the past 12 months; this is a strong abandonment concern despite 12 releases overall.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the past three months, consistent with the release history and indicating no current maintenance capacity.

Dependency profilecaution

The package declares 12 runtime dependencies, including several framework and security components; this increases compatibility and maintenance burden for an already inactive release.

Licensecaution

An MIT license file is present in both the artifact and repository, so the release is licensed. The manifest's proprietary declaration conflicts with the detected MIT license and creates avoidable legal ambiguity.

Package scaffoldingcaution

A substantial README and tests are present, supporting transparency and basic maturity. However, the README explicitly documents an installation error and workaround, which harms consumer reliability.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
doctrine/orm
Version ^2.7
—
—
scheb/2fa-bundle
Version ^v5.13
—
—
api-platform/core
Version ^2.5
—
—
symfony/messenger
Version ^5.0
—
—
api-platform/api-pack
Version ^1.2
—
—

Weekly Downloads

Info

Last Published
4 years ago
Created
6 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform