The source project has no security policy, security scanning, or automated workflow coverage, while its consumer-facing documentation is absent. Its stable version and small dependency set do not compensate for the lack of activity and the package-level replacement notice.
18%
Total Score
25
100
50
75
Packagist marks the entire package as abandoned and names wp-digital/innstats as its replacement. Package-level deprecation is a severe dependency risk even though the specific release is not separately withdrawn.
The latest release was published about three years and five months ago, with no releases in the last 12 months. This indicates the published package is no longer actively maintained.
The repository recorded zero commits and zero active maintainers over the last three months, consistent with the long release gap and materially increasing abandonment risk.
The artifact has no README, while this package exposes an admin interface and developer API that consumers need to integrate. Missing tests and changelog files are normal packaging practice and do not add concern.
There was no issue or pull-request activity in the last month. This supports the picture of an inactive project, although the absence of open issues alone is not negative.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
innocode-digital/wp-version Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.