Package Health

bonnier/wp-willow-auth

The stable release and matching organization-backed repository provide some continuity. Maintenance has stopped for over five years, and the package offers no license information or meaningful documentation for consumers.

Latest 3.2.2PackagistPackagist

38%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

67

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Release historydanger

The package has 13 releases since November 2018, but none in the last five years; the latest release was published in May 2021. This indicates substantial abandonment risk despite an established release history.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last three months, consistent with the repository's last push in May 2021. The long period without observed development materially lowers maintenance confidence.

Licensecaution

Neither the package nor the linked repository declares or contains a recognized license. That is a real transparency and adoption concern for a dependency.

Package scaffoldingcaution

The package includes a README, but it is only 17 characters and provides no useful integration guidance. Missing tests and a changelog are normal for published artifacts, while the GitHub release provides some release documentation evidence.

Security policycaution

The linked repository has no security policy, leaving no documented path for reporting vulnerabilities. This adds a modest transparency concern alongside the package's otherwise limited maintenance evidence.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Bonnier Interactive

Direct Dependencies

DependencyLast ReleaseScore
bonnier/willow-mu-plugins
Version ^2.0
—
—

Weekly Downloads

Info

Last Published
5 years ago
Created
7 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform