The Apache-2.0 license, matching repository, and simple Composer dependency are clear positives. The missing security policy limits transparency, while the zero commit history is too new to judge.
78%
Total Score
100
100
86
83
The package was first published today and has only one release, so there is no established release track yet; this is an uncertainty rather than evidence of abandonment.
Composer is used as the build tool, which fits the package, but no security scanning tool was detected; this is a modest repository-hygiene gap.
The linked repository has no security policy. For a small generated types metapackage this is a limited transparency gap, but it provides no documented vulnerability-reporting process.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
tyhpdef/google-apiclient-services-cloudshell-impl Version ~0.459.0.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.