Clear documentation, tests, changelog, and recent release notes make the package easier to adopt and maintain. The only notable concerns are unpinned workflow actions and the absence of a security policy or scanning tools.
86%
Total Score
100
100
100
75
The repository has no security policy. For a WordPress plugin advertising security features, this is a transparency gap, although active releases and tests partly offset the concern.
The single workflow was fully analyzed with no dangerous triggers, untrusted checkouts, script injection, or audit findings. However, all 4 action references are unpinned, leaving a modest build-integrity hygiene gap.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.