Tests are included, licensing is clear, and installation runs no lifecycle scripts. The organization-owned repository is unarchived, but zero recent commits and no security policy leave maintenance maturity unproven.
68%
Total Score
75
100
79
83
This is the package's first release, published today, with only one release recorded. That is understandable for a new package but provides no evidence of sustained maintenance.
The repository has zero commits and zero active maintainers in the last three months. Because it was pushed today and has only one release, this mainly reflects an unproven track record rather than confirmed abandonment.
Composer build tooling is present, but no security scanning tools were detected. This is a modest repository hygiene gap, not evidence that the package is unsafe.
The repository has no security policy. For a package intended for dependency use, that reduces transparency about vulnerability reporting and handling.
Version 0.459.0.0 is not a stable-major release, which limits maturity evidence. For an implementation package, this is a moderate concern rather than a severe stability warning.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
google/apiclient-services Version 0.459.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.