Package Health

moogatw/wp-metabox

The package is small, clearly documented, and has a focused dependency profile. Its only release was nearly five years ago, with no recent commits and no tests or security policy, leaving maintenance and abandonment concerns.

Latest v1.0PackagistPackagist

44%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

25

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

69

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Release historydanger

The package has only one release, published nearly five years ago, and none in the last 12 months. This is strong evidence of an inactive project for a dependency that may need compatibility maintenance.

Repo commit activitydanger

There were no commits and no active maintainers in the last three months, consistent with the long release gap and increasing abandonment risk.

Project backingcaution

The package and repository are owned by the same individual account, so the source linkage is coherent, but there is no organizational backing shown to offset the thin maintenance record.

Repo popularitycaution

The repository has zero stars and forks and only one watcher. Popularity is supporting evidence rather than a verdict, but these counts provide no community signal to compensate for the inactive maintenance record.

Repo toolingcaution

Composer is used as the build tool, which is appropriate for the package, but no security scanning tooling was detected. This is a modest transparency and maintenance gap for a dependency.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Mooga

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
4 years ago
Created
4 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform