Package Health

xiaozhuangyuan/jwt

The README explains installation and usage, and the package has no install-time scripts. The license metadata conflicts with the detected license, so verify which terms apply before adoption.

Latest 1.0.0PackagistPackagist

38%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

50

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historydanger

This is the only release, published over seven years ago, with no releases in the last 12 months. The stable version and lack of deprecation do not offset the absence of release maintenance.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last three months, consistent with a project that has not been maintained since its initial release.

Licensecaution

The manifest declares MIT, while the artifact license file is detected as Apache-2.0. A license is present, but the mismatch creates uncertainty about the terms governing this release.

Security policycaution

The linked repository has no security policy. For a JWT library, that reduces transparency around how security issues should be reported and handled.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Zhuang Yuan

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
7 years ago
Created
7 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform