The artifact is small, licensed, documented, and has no install-time scripts. Its maintenance record is thin, with only one release and no commits in the last three months.
61%
Total Score
50
100
81
83
This package has made only one release, about nine months ago, with no subsequent release history. That limited record makes long-term maintenance uncertain.
The repository recorded zero commits and zero active maintainers during the last three months. For a package released about nine months ago, this is a meaningful maintenance concern.
Composer build tooling is present, but no security scanning tools were detected. This is a modest repository hygiene gap rather than evidence of abandonment.
The repository has no security policy. That reduces transparency for reporting vulnerabilities, though it is not by itself evidence that the package is unsafe to depend on.
The assessed version is not marked prerelease, but it is still v0.1.0 and the package has only one release, so maturity evidence is limited.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
thebbapp/rest-api-bbpress Version 0.1.0 | — | — |
thebbapp/content-source-wordpress-base Version 0.1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.