The package is a small, test-backed implementation artifact with an organizational owner and no install-time scripts. Its maintenance record is too new to establish a dependable release or contribution pattern, and repository security coverage is limited.
68%
Total Score
75
100
79
88
This is the first release, published 0 days ago, with only 1 release overall. That makes maintenance maturity and release continuity unproven, though the repository was created at the same time rather than appearing abandoned.
There were 0 commits and 0 active maintainers in the last 3 months. Because the package is only 0 days old, this is partly expected, but it still provides no evidence of sustained maintenance.
Composer is used as the build tool, but no security scanning tools are reported. This is a modest transparency and hygiene gap rather than evidence of unsafe code.
The repository has no security policy. For a small implementation package this is a minor transparency gap, not a severe dependency risk on its own.
The version is not a prerelease, which is positive, but there is no release history to demonstrate that this version line is stable in practice.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
google/apiclient-services Version 0.459.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.