It has an Apache-2.0 license, tests, and a repository that matches the package under organization ownership. The package is brand new, with one release and no recorded commits yet, so maintenance capacity is unproven.
67%
Total Score
75
79
50
The package is 0 days old with only one release, so there is no release cadence or track record to assess. This reflects limited maturity rather than abandonment because the package is newly published.
The repository has zero commits and zero active maintainers in the last 3 months, but it was created at the same time as this first release. That leaves maintenance capacity unproven rather than demonstrating abandonment.
Composer is used as the build tool, which fits the package ecosystem, but no security scanning tools are reported. This is a modest transparency and hygiene gap.
The repository has no security policy, reducing published guidance for reporting vulnerabilities. This is a minor concern for a newly created, small generated package.
Version 0.459.0.0 is not a prerelease, which is appropriate for a generated implementation package, but the single-release history provides little evidence of stability.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
google/apiclient-services Version 0.459.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.