The package includes a clear README, release notes, matching GPL-2.0 licensing, and no install-time scripts. Its small project footprint and lack of security scanning provide limited assurance for a plugin that can alter site templates.
38%
Total Score
33
100
67
75
Only three releases were published, with the latest on June 26, 2017 and none in the subsequent 12 months. This is strong evidence of abandonment risk for a package intended as an active CMS plugin.
There were no commits and no active maintainers in the preceding three months, consistent with the release history and indicating a serious abandonment risk.
The repository is owned by an individual rather than an organization, so the small maintainer base provides limited visible backing for a long-lived plugin.
There were no new or closed issues or pull requests in the preceding month. With no open backlog this is not itself harmful, but it provides no evidence of current maintenance.
Seven stars and three forks indicate a small project footprint. Popularity is supporting evidence only, but it offers little compensating evidence for the observed inactivity.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
textpattern/lock Version >=4.6.0 | — | — |
textpattern/installer Version * | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.