Package Health

getpop/queriedobject-wp

This release shows strong ongoing activity and reasonable package hygiene: it has 161 releases over roughly 5 years, 33 releases in the last 12 months, a stable non-prerelease version, an active non-archived repository, tests, a README, a license file, and no install-time lifecycle scripts. However, Packagist explicitly marks the package as abandoned and provides `pop-schema/queriedobject-wp` as a replacement, which is a severe dependency-safety concern despite the recent release activity. Maintenance is also concentrated in one contributor, and the repository lacks a security policy and changelog. Developers should prefer the stated replacement unless they have a specific compatibility reason to use this abandoned package.

Latest 19.2.4PackagistPackagist

35%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

83

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

81

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

90

Health Score Breakdown

Registry deprecationdanger

Packagist marks the package as abandoned and names `pop-schema/queriedobject-wp` as the replacement. This is a severe signal that new dependencies should not be taken on this package even though releases continue.

Repo bus factorcaution

All 14 commits in the last 3 months came from one contributor, giving the repository a complete short-term contributor concentration. Organization ownership provides some ability to hand maintenance off, but no second active contributor is shown, so this remains a maintenance risk.

Repo toolingcaution

The repository uses Composer for builds, but no security-scanning tools are reported. Composer support is appropriate for the ecosystem; the missing scanning tooling is a modest supply-chain hygiene gap rather than a standalone severe risk.

Security policycaution

No repository security policy was found. The README supplies an email contact for security issues, which is useful compensating evidence, so the absence is a limited concern.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Leonardo Losoviz

Direct Dependencies

DependencyLast ReleaseScore
pop-cms-schema/queriedobject
Version ^19.2.4
—
—
pop-cms-schema/schema-commons-wp
Version ^19.2.4
—
—

Weekly Downloads

Info

Last Published
19 days ago
Created
5 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform