The five-file plugin is easy to inspect and its organization-owned repository is not archived. Its last release was about three years ago and recent commit activity is absent, so maintenance confidence is limited.
58%
Total Score
75
86
83
The package has 84 releases, but the latest was about three years ago and there were no releases in the last 12 months. That long release gap lowers confidence in ongoing maintenance.
There were zero commits and zero active maintainers in the last three months. The organization-owned repository provides backing context, but it does not replace evidence of current development activity.
The repository uses Composer for builds, but no security scanning tools were detected. For this small plugin, the missing scanner is a modest transparency gap rather than a severe risk.
The repository has no security policy. This limits the documented security reporting path, although the package's small scope and lack of install scripts reduce the practical impact.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.