Clear documentation, an MIT license, a changelog, and only one runtime dependency make the package easy to evaluate and integrate. Recent work is concentrated in one contributor, and the repository has no security policy or scanning tools, leaving maintenance and security-process gaps.
68%
Total Score
83
100
86
50
The package is young at 95 days old with two releases, so its maintenance record is still limited despite releases arriving about 37 days apart.
All eight recent commits came from one contributor, creating a real continuity risk; organization ownership provides some handoff capacity but no second active contributor is shown.
The project uses Make and Composer, but no security scanning tools were detected, leaving a modest process gap for a WooCommerce integration.
The repository has no security policy, making vulnerability reporting and response expectations less transparent for a plugin that runs in WordPress sites.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.