The package includes a clear README, tests, a license, and no install-time scripts. Its source repository could not be found, so maintenance and provenance remain difficult to verify; the package should not be adopted as published.
18%
Total Score
50
60
100
Packagist marks the entire package as abandoned, with no replacement provided. Package-level abandonment is a severe dependency risk despite the other positive metadata.
The package declares eight runtime dependencies, including several related TentaPress components, with no development dependencies. The focused dependency set is understandable, but the runtime coupling adds maintenance risk for a young abandoned package.
The package is young at 215 days and has three releases, all within the last 12 months, with a median interval of about 3 days. This shows an initial release burst but not sustained maintenance.
Version 0.2.0 is not a prerelease, but the 0.x major version indicates an immature API with potentially breaking changes before 1.0.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
tentapress/seo Version <1.0 | — | — |
tentapress/media Version <1.0 | — | — |
tentapress/menus Version <1.0 | — | — |
tentapress/pages Version <1.0 | — | — |
tentapress/posts Version <1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.