Package Health

screenfeed/sf-adminbar-tools

The package has a declared GPL-2.0 license, a readable README, release notes, and a modest runtime dependency set. Its workflows use five unpinned actions, and the repository has no security policy.

Latest v4.0.0PackagistPackagist

42%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

0

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

75

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Release historydanger

Only one release exists, published about five years and eight months ago, with none in the last 12 months. This is strong evidence of abandonment risk for a WordPress plugin.

Repo commit activitydanger

The repository recorded no commits and no active maintainers in the last three months, consistent with the long release gap and leaving compatibility work unverified.

Lifecycle scriptscaution

post-install-cmd and post-update-cmd scripts run during Composer operations, adding execution during installation and updates. The signal provides no evidence that these scripts are unsafe, so this is a limited supply-chain hygiene concern.

Security policycaution

The repository has no security policy, making the process for reporting and handling vulnerabilities unclear. This matters for a plugin that runs inside WordPress sites.

Workflow auditcaution

All five analyzed action references are unpinned, which weakens build reproducibility. The audit found no untrusted checkouts, script injection, dangerous triggers, or top-level write permissions, so this remains a hygiene concern rather than a severe workflow risk.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Grégory Viguier

Direct Dependencies

DependencyLast ReleaseScore
league/container
Version ^2.4
—
—
mustache/mustache
Version ^2.13
—
—
composer/installers
Version ~1.0
—
—
screenfeed/autowpoptions
Version ^1.0
—
—

Weekly Downloads

Info

Last Published
5 years ago
Created
5 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform