Package Health

wordpress-premium/advanced-custom-fields-pro

The release cadence is modest, while installation runs a Composer post-autoload hook. The repository could not be found, leaving maintenance and provenance unverifiable.

Latest v6.8.9PackagistPackagist

12%

Total Score

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

60

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

50

Using this package? Scan for Free

Health Score Breakdown

Licensedanger

The manifest declares GPL-2.0-or-later, but the artifact contains detected MIT license text, creating a material licensing mismatch despite having license files.

Package scaffoldingdanger

The readme identifies the package as a fully activated premium copy from wordpress-premium.net and documents a license code that is automatically restored, indicating an unauthorized repackaging rather than a trustworthy upstream release.

Lifecycle scriptscaution

The package runs a post-autoload-dump install-time script. This is not inherently unsafe, but it adds execution during installation to an artifact whose provenance is already difficult to verify.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

WP Engine

Direct Dependencies

No direct dependencies.

Weekly Downloads

Info

Last Published
29 days ago
Created
7 years ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform