The package has no declared or detected license, and its repository has no security policy. It includes tests, a changelog, and substantial recent release activity, but maintenance is concentrated in one contributor.
42%
Total Score
50
69
50
Packagist marks the entire package abandoned and names fishpig/magento2-wordpress-integration as its replacement. This is a major adoption risk despite the package's recent releases.
No license declaration, license file, or repository license file was detected, leaving the legal terms for using this dependency unclear.
One contributor made all commits in the last three months, concentrating current maintenance responsibility in a single person.
Only two commits were made in the last three months, showing limited recent development activity. The recent release history provides some compensation, but maintenance momentum is modest.
The repository name does not match the package name and its README does not mention the package, creating uncertainty about whether it is the correct source repository.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
magento/framework Version * | — | — |
magento/module-store Version * | — | — |
magento/module-config Version * | — | — |
magento/module-sitemap Version ^100.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.