Package Health

ultimate-multisite/ai-provider-for-any-openai-compatible

Registers a WordPress AI Client provider for Ollama, LM Studio, or any AI endpoint using the standard chat completions API format.

Latest v2.2.1PackagistPackagist

76%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

90

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

88

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

80

Health Score Breakdown

Repo bus factorcaution

Two contributors were active, but the top contributor made 10 of 11 commits, or about 91%. The second active contributor partly compensates for this concentration, but the project still has a meaningful continuity risk.

Repo package mentioncaution

The repository name does not match the package name and its README does not mention the package. Although name differences can occur with subpackages, the absence of both a name match and README reference raises concern that the repository linkage may not clearly identify the published package.

Repo toolingcaution

Composer build tooling is present, but no security scanning tools are configured. The missing scanning reduces repository security transparency, while build tooling and lockfiles provide some compensating hygiene.

Security policycaution

The repository has no security policy. This leaves vulnerability reporting and disclosure expectations unclear, creating a transparency gap for dependents.

Token permissionscaution

All 3 workflows lack top-level permissions declarations, and none declares read-only permissions. No workflow has top-level write permissions, which limits the observed risk, but explicit least-privilege configuration is still missing.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Ultimate Multisite Community

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
27 days ago
Created
7 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform