FIDO2/Webauthn Support For PHP
42%
Total Score
unhealthy
Risky: no releases or repository commits for over two years.
The package has had 95 releases but none in the last 12 months, and the latest release is more than two years old. That strongly suggests the project is no longer actively maintained.
The repository recorded zero commits and zero active maintainers in the last three months, with no newer release activity to offset that gap. This is a strong abandonment concern.
There were no new or merged pull requests in the last month and no new issues; this supports the picture of an inactive project, although issue data is partly unknown.
Composer build tooling is present, but no security scanning tools were detected. For an authentication library, that is a meaningful maintenance and transparency gap.
The repository has no security policy. For a package implementing WebAuthn authentication, the absence makes vulnerability reporting and maintenance expectations less transparent.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
psr/log Version ^1.0|^2.0|^3.0 | — | — |
symfony/uid Version ^6.1|^7.0 | — | — |
psr/http-client Version ^1.0 | — | — |
psr/http-factory Version ^1.0 | — | — |
web-auth/cose-lib Version ^4.2.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.