The package includes a substantial README, repository tests, and release notes for this version. Composer tooling and Dependabot add useful maintenance support, while the single registry publisher is backed by an organization.
65%
Total Score
67
100
50
The repository recorded no commits and no active maintainers in the last three months. The recent release and repository push provide some counterweight, but current development activity is weak.
There are three open pull requests, but no issues or pull requests were merged in the last month. This is a modest sign of limited current throughput rather than clear abandonment.
No repository security policy was found. This is a transparency gap for reporting vulnerabilities, but it is not by itself evidence of unsafe code or abandonment.
All four workflows were analyzed without high- or medium-confidence findings, and they have no untrusted triggers or script-injection sinks. However, all nine action references are unpinned, leaving builds exposed to upstream action changes.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
pinkcrab/wp-db-migrations Version ^1.0 | — | — |
pinkcrab/perique-framework-core Version 2.1.* | — | — |
pinkcrab/perique-plugin-lifecycle Version 2.1.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.