Enhanced analytics for WooCommerce users.
80%
Total Score
healthy
Healthy: frequent releases and an active, organization-backed repository support this release.
Composer post-install and post-update scripts add install-time execution risk and deserve review, even though they are not by themselves evidence of an unhealthy project.
Composer build tooling is present, but no security scanning tools were detected, leaving a modest transparency and defense-in-depth gap.
Both workflows were analyzed with no audit findings and no untrusted checkout or script-injection paths. One workflow has top-level write permissions and one of two action references is unpinned, creating mild workflow hygiene concerns.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
automattic/jetpack-assets Version ^4.3 || ^5.0 | — | — |
automattic/block-delimiter Version ^0.3 || ^0.4 | — | — |
automattic/jetpack-constants Version ^3.0 || ^4.0 | — | — |
automattic/jetpack-connection Version ^8.1 || ^9.0 | — | — |
automattic/jetpack-device-detection Version ^3.4 || ^4.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.