It has a clear README, a stable version, and no install-time scripts. The declared MIT license conflicts with the GPL-3.0 license file, and the repository has no security policy.
42%
Total Score
50
100
75
83
Only two releases were published, both in December 2019, with no releases in the last 12 months. This strongly indicates the package is no longer actively maintained.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long release gap and raising abandonment risk.
The package declares MIT, but its license file is detected as GPL-3.0. The presence of a license file is positive, but the mismatch requires resolving licensing obligations before adoption.
Composer is used for builds, but no security scanning tools are configured. The missing scanning is a modest hygiene gap rather than evidence of unsafe behavior.
The linked repository has no security policy. This is a transparency and vulnerability-reporting gap, although it is less severe than the prolonged inactivity.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
10quality/wpmvc-core Version ^3.1 | — | — |
10quality/wpmvc-addon Version 1.0.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.