Add Google Analytics tracking to your website
63%
Total Score
50
100
88
50
The package defines post-install and post-update Composer scripts. These add installation-time execution surface and warrant review, though the signal alone does not show harmful behavior.
The latest registry release was in July 2022, with no releases in over four years. This is a substantial maintenance concern, although the repository remains available and unarchived.
The repository had no commits and no active maintainers in the last three months. Combined with the absence of registry releases for over four years, this indicates weak current maintenance.
Composer is used as a build tool, but no security scanning tool was detected. For a small plugin this is a hygiene gap rather than a severe dependency risk.
The repository has no security policy. That reduces transparency about vulnerability reporting and handling, though it is not evidence of a vulnerability itself.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.