Usable with caveats: this is a mature, stable WordPress plugin with a recent release, clear source repository, tests, and organization backing. However, the repository shows no commits or active maintainers in the last three months, and release activity has slowed to one release in the past year.
72%
Total Score
75
100
83
100
The package has existed for about 8 years with 38 releases and a release roughly two months ago, but only one release occurred in the last year, indicating slower maintenance.
The repository recorded zero commits and zero active maintainers during the last three months, which is the clearest maintenance concern even though a recent package release exists.
There is one open issue and one open pull request, but neither issues nor pull requests were created or closed in the last month, suggesting limited current community activity.
The repository has no stars and only one fork, indicating limited visible adoption, but popularity is supporting evidence and does not outweigh the maintained structure and organizational backing.
Composer build tooling is present, but no security scanning tools were detected; this is a transparency gap, not evidence that the package is unsafe by itself.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
cmb2/cmb2 Version ^2.0 | — | — |
spatie/opening-hours Version ^3.0 | — | — |
johnbillion/extended-cpts Version ^4.0 | ^5.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.