The repository has no stars or recent issue activity, and it does not name this package in its README. The MIT declaration and simple dependency set help, but they do not offset the lack of recent maintenance evidence.
38%
Total Score
100
100
58
100
The latest release was about nine years ago, with no releases in the last 12 months. This is strong evidence of abandonment for a package developers may need to keep compatible with current WordPress environments.
The linked repository name differs from the package name and its README does not mention the package. This raises uncertainty about whether the repository is the package's maintained home.
The repository has zero stars and zero forks, with eight watchers. Popularity is only supporting evidence, but these low adoption signals provide little reassurance alongside the long inactivity.
The repository is not archived, which avoids an explicit abandonment marker, but its last push was about nine years ago and therefore does not compensate for the stale release history.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
symfony/yaml Version >=2.7 <4.0 | — | — |
cebe/markdown Version ~1.0.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.