Package Health

lewebsimple/wp-cfm-content

The package documents its WordPress purpose and has no install-time scripts. Its very small codebase provides little evidence of ongoing review or support, so future compatibility and maintenance remain uncertain.

Latest v0.2.0PackagistPackagist

40%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

71

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historydanger

The latest release was in November 2021, with no releases in the last 12 months and only three releases overall. That long period without updates is strong evidence of abandonment risk for a dependency.

Repo commit activitydanger

The repository recorded zero commits and zero active maintainers in the last three months, consistent with the nearly five-year release gap and offering no evidence of current maintenance.

Licensecaution

The package README states GPLv2 or later, but the collected metadata found no declared license and no license file in the package or repository. That leaves licensing transparency weaker than expected despite the README statement.

Package file treecaution

The package and repository each contain only four files, including one PHP entry point and a README. This may fit a small plugin, but it provides little visible project structure for testing, documentation, or review.

Repo toolingcaution

Composer is used as a build tool, which supports reproducible package structure, but no security scanning tools are present. The missing scanning is a modest hygiene concern rather than evidence of an unsafe release.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
4 years ago
Created
4 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform