Regular releases and current commit activity show that the project is maintained, with release notes and a clear license. Maintenance depends on one recent contributor, and the source repository does not identify or mention this package.
67%
Total Score
75
92
83
All 3 recent commits came from one contributor, giving the project a concentrated maintenance base. This raises continuity risk for a user-owned project.
The repository name does not match the package name and its README does not mention the package. This makes it unclear whether the linked source repository actually corresponds to the published package.
The repository has no security policy. For a plugin that runs inside WordPress, this is a transparency gap, although active releases and dependency scanning provide some compensation.
We didn't find any vulnerabilities for this package.
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.