The codebase is mature, with 247 releases, tests, a changelog, and a recent repository update. A single active contributor, no license, and limited security documentation add adoption risk.
43%
Total Score
50
71
50
Packagist marks the entire package as abandoned and names fishpig/magento2-wordpress-integration as its replacement. This is a major maintenance and adoption risk, though the linked repository remains active.
No declared license or license file was found in the package or repository. Without licensing terms, legal reuse and dependency adoption are less clear.
One contributor made all 2 commits in the last 3 months, giving the project a fully concentrated recent contributor base. That increases continuity risk for a user-owned project.
Only 2 commits were recorded in the last 3 months, indicating limited recent development despite the recent release. This is a modest maintenance concern.
The repository name matches the package, but its README does not mention the package name. This creates a mild ownership or packaging-transparency concern, without the stronger mismatch signal.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
magento/framework Version * | — | — |
magento/module-store Version * | — | — |
magento/module-config Version * | — | — |
magento/module-sitemap Version ^100.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.