The package is clearly identified, licensed, and backed by an organization, with a focused artifact and release notes. Its long inactivity leaves limited evidence of current maintenance and security practice.
60%
Total Score
100
100
83
83
The latest release was published in June 2023, and there have been no releases in the last 12 months. This is a meaningful maintenance concern, though the repository is not archived and the package has a stable release history.
The repository has four stars and no forks, indicating limited public adoption. Popularity is only supporting evidence, so this modestly limits confidence rather than determining the verdict.
Composer is used as the build tool, but no security scanning tools are present. The missing scanning is a modest transparency gap, especially alongside the long period without releases.
The repository has no security policy or reporting file. That does not make the package unsafe by itself, but it weakens transparency for handling vulnerabilities.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
globalis/wp-cubi-helpers Version ^1.0.5 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.