The package has a clear README, a stable release, and a small dependency surface. Its organization-backed repository is intact and matches the package, but the code has seen no recorded activity or release for about six years.
58%
Total Score
75
100
83
50
Only two releases exist, with the latest published on January 31, 2020 and none in the following six years. This indicates a dormant project, although a small stable component may not need frequent releases.
The repository recorded zero commits and zero active maintainers in the last three months, consistent with the long gap since the latest release. No provided signal shows current maintenance activity to offset that concern.
The repository has one star, one fork, and one watcher, indicating limited external adoption. Popularity is supporting evidence only, so this modestly reinforces the maintenance caution rather than determining the verdict.
Composer is used as the build tool, but no security scanning tool is reported. Build tooling supports reproducibility, while the absent scanning is a minor hygiene gap rather than evidence of unsafe code.
The repository has no security policy. This is a transparency and reporting gap, though the package's small scope and other available source metadata partly reduce its practical weight.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
wp-kit/wordpress-eloquent Version ^1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.