The package documents its WordPress purpose and has no install-time scripts. Its very small codebase provides little evidence of ongoing review or support, so future compatibility and maintenance remain uncertain.
40%
Total Score
0
71
75
The latest release was in November 2021, with no releases in the last 12 months and only three releases overall. That long period without updates is strong evidence of abandonment risk for a dependency.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the nearly five-year release gap and offering no evidence of current maintenance.
The package README states GPLv2 or later, but the collected metadata found no declared license and no license file in the package or repository. That leaves licensing transparency weaker than expected despite the README statement.
The package and repository each contain only four files, including one PHP entry point and a README. This may fit a small plugin, but it provides little visible project structure for testing, documentation, or review.
Composer is used as a build tool, which supports reproducible package structure, but no security scanning tools are present. The missing scanning is a modest hygiene concern rather than evidence of an unsafe release.
We didn't find any vulnerabilities for this package.
No maintainer information available.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.