It includes tests, a matching GPL-2.0 license, a clear README, and a small runtime dependency set. The source repository remains available and backed by an organization, but the published release is very old and recent commit activity is absent.
62%
Total Score
67
100
89
75
The latest release was published on July 10, 2017, with no releases in the last 12 months and only two releases overall. This materially raises compatibility and abandonment concerns for a WordPress plugin, despite the repository receiving a later push.
The repository had zero commits and zero active maintainers in the most recent three months. Combined with the old registry release, this leaves current maintenance capacity uncertain.
There is one open issue and two open pull requests, but no new or closed issues or pull requests in the last month. This suggests limited recent community activity without proving abandonment.
The repository uses Composer build tooling, which fits the package ecosystem. No security scanning tools are configured, a modest hygiene gap that is less significant than the maintenance concerns.
The repository has no security policy. This weakens vulnerability-reporting transparency, but it is a secondary concern for this small plugin and is partly offset by its clear source and tests.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
composer/installers Version ~1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.