Package Health

web-token/jwt-encryption-algorithm-aeskw

Organization backing, stable versioning, and a clear MIT license provide useful context. The source repository is small and has had no commits in the last three months, so ongoing support is uncertain.

Latest 3.4.8PackagistPackagist

22%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

67

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

100

Health Score Breakdown

Registry deprecationdanger

Packagist marks the entire package as abandoned and names web-token/jwt-library as its replacement. This is a severe adoption risk even though the specific release is stable.

Release historycaution

The package has 96 releases since August 2018, but none in the last 12 months and its latest release was in February 2024. The long release gap supports the abandonment concern.

Repo commit activitycaution

The repository recorded zero commits and zero active maintainers in the last three months. This weakens confidence in ongoing maintenance, despite a push recorded in May 2025.

Repo toolingcaution

The repository uses Composer, but no security-scanning tools were detected. That is a transparency and maintenance gap for a cryptographic package.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Florent Morselli
All contributors

Direct Dependencies

DependencyLast ReleaseScore
web-token/jwt-library
Version ^3.3
spomky-labs/aes-key-wrap
Version ^7.0

Weekly Downloads

Info

Last Published
2 years ago
Created
8 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform