Package Health

ayesh/wordpress-comment-form-csrf

The package is small, clearly licensed, documented, and has no install-time scripts. Its one-person ownership and lack of security scanning leave less maintenance and review capacity than ideal.

Latest v1.4PackagistPackagist

55%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

88

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Maintainerscaution

The registry lists one maintainer, while the linked repository is owned by the same individual. This provides clear ownership but leaves limited apparent maintainer redundancy.

Release historycaution

The latest release was published in July 2023, with no releases in the following three years and only three releases overall. This indicates substantially slowed maintenance for a security-related WordPress plugin.

Repo commit activitycaution

The repository recorded no commits and no active maintainers in the past three months, consistent with the long release gap. The repository is not archived, but there is no recent development evidence.

Security policycaution

The linked repository has no security policy, which is a transparency gap for a package intended to address a security concern. Its small scope partly limits the impact, but there is no documented reporting process.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Ayesh Karunaratne

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
3 years ago
Created
7 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform