Fast to type. Fast to run WordPress REST endpoints
58%
Total Score
caution
Usable with caveats: Packagist marks this release line abandoned despite an active repository.
Packagist marks the package as abandoned at package scope, with no deprecation message and a replacement pointing to the same package name. This is a substantial adoption and maintenance warning despite the repository's recent activity.
All 3 commits in the last 3 months came from one contributor, giving the project a concentrated recent maintenance base. Organization ownership provides some handoff capacity, but no second recent contributor is shown.
The repository has no security policy. That reduces disclosure transparency, although it is partly offset by the active repository, tests, and organization backing.
All 8 analyzed action references are unpinned, which weakens build reproducibility; one workflow also grants top-level write permissions. The audit found no untrusted checkout, script injection, or high-confidence dangerous finding, limiting this to a hygiene concern.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
php-di/invoker Version ^2.0 | — | — |
attributes-php/validation Version ^0.9 | — | — |
attributes-php/serialization Version ^0.3 | — | — |
attributes-php/wp-fastendpoints-contracts Version ^3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.