Package Health

yard/acf-registrar

Tests, release notes, and a clear MIT license make the package easy to evaluate. Dependabot and Composer tooling help, though the project has had no commits in three months and its workflows use unpinned actions and inherited secrets.

Latest v2.0.0PackagistPackagist

67%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

94

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

83

Health Score Breakdown

Release historycaution

Six releases arrived within the package's first 158 days, but the releases are clustered rather than demonstrating a long, steady maintenance history.

Repo commit activitycaution

There were no commits and no active maintainers in the last three months, which is a meaningful maintenance warning for a package released only recently.

Security policycaution

The repository has no published security policy, leaving vulnerability-reporting expectations unclear, though this is a moderate transparency gap rather than evidence of abandonment.

Workflow auditcaution

All five workflow action references are unpinned, and each workflow inherits secrets in a reusable workflow; the audit found no high-severity issues or untrusted checkouts, so this is a workflow-hygiene caution.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
vinkla/extended-acf
Version ^14

Weekly Downloads

Info

Last Published
6 months ago
Created
1 year ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform