The MIT declaration and small dependency set make the package straightforward to audit. Single-user ownership and the absent security policy provide little additional maintenance assurance.
38%
Total Score
25
70
50
The latest release was published in July 2020, with no releases in the past 12 months; this is a substantial abandonment concern for a dependency.
The repository recorded zero commits and zero active maintainers in the past three months, consistent with the long release gap and leaving current maintenance unverified.
The package has one registry maintainer, and the project is backed by a personal user account rather than an organization; this leaves limited visible succession or maintenance capacity.
The linked repository is named acf-agents rather than acf-agent, and no README package mention was available, so the repository's relationship to this package is not fully clear.
The repository has no security policy, reducing transparency about vulnerability reporting and response, though this is secondary to the much older maintenance activity.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
dashifen/wp-handler Version ^10.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.