Package Health

silverassist/wp-coding-standards

Documentation, release notes, and recent commits provide useful maintenance evidence. The organization-backed repository is active, but install scripts and release-workflow credential and template risks warrant care.

Latest v1.1.7PackagistPackagist

65%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

88

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

94

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Health Score Breakdown

Lifecycle scriptscaution

post-install-cmd and post-update-cmd scripts run during Composer operations, increasing installation-time behavior and review burden compared with a passive configuration package.

Repo bus factorcaution

All nine recent commits came from one contributor. Organization ownership provides some handoff capacity, but the observed maintenance base remains concentrated.

Repo toolingcaution

Composer build tooling is present, but no security-scanning tools were detected, leaving a repository security-process gap.

Security policycaution

The repository has no security policy, reducing transparency about vulnerability reporting and response expectations.

Workflow auditcaution

All three workflows were analyzed successfully, but the release workflow has high-confidence template-injection findings, secrets-inherit usage, top-level write permissions, and four of nine unpinned actions. The trigger and sink counts are zero, so this is workflow hygiene and credential exposure risk rather than a standalone severe verdict.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Silver Assist

Direct Dependencies

DependencyLast ReleaseScore
slevomat/coding-standard
Version ^8.0
—
—
wp-coding-standards/wpcs
Version ^3.0
—
—
squizlabs/php_codesniffer
Version ^3.7 || ^4.0
—
—
silverassist/coding-standards
Version ^1.0
—
—
phpcompatibility/phpcompatibility-wp
Version ^2.1
—
—

Weekly Downloads

Info

Last Published
5 days ago
Created
1 month ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform