Its stable version and minimal PHP-only dependency profile keep adoption straightforward. The small repository has no security policy or automated security scanning, so future fixes and review capacity are limited.
58%
Total Score
75
100
78
83
The package has had no releases in more than four years, despite six releases overall, which is a meaningful sign of dormant maintenance for a dependency.
There were zero commits and zero active maintainers in the last three months, consistent with a repository that has been dormant since January 2022.
The repository has only two stars, zero forks, and one watcher, indicating limited visible adoption and a thin external support base.
Composer build tooling is present, but the repository reports no security scanning tools, leaving a security-maintenance gap for a package intended to run in WordPress.
The linked repository is not archived, although its last push was in January 2022, so this does not offset the inactivity evidence.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.