The package has a clear MIT license, tests, documentation, and organization backing. Its repository lacks a security policy and security scanning, leaving maintenance safeguards weaker than its packaging quality.
62%
Total Score
67
100
83
83
The package is mature at about 6 years old and has 16 releases, but only one release appeared in the last 12 months, indicating a slow recent cadence.
The repository recorded zero commits and zero active maintainers during the last three months. A recent release partly offsets this, but the lack of current development activity still raises maintenance risk.
There are two open issues and one open pull request, with no issues or pull requests opened or merged in the last month; this provides little evidence of active community maintenance.
The repository has only 2 stars and 2 forks, showing a small adoption footprint. This is supporting evidence of limited maturity, not a standalone reason to reject the package.
Composer build tooling is present, but no security scanning tools were detected. The build setup is appropriate, while the missing automated security checks is a modest hygiene gap.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
10quality/wpmvc-core Version >=3.1.0 | — | — |
10quality/wpmvc-addon Version 1.0.* | — | — |
10quality/wpmvc-addon-resources Version 1.0.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.