Package Health

tyhpdef/google-apiclient-services-dfareporting

The README clearly explains the metapackage, its generated type dependency, and the intended Composer usage. The linked organization owns a matching repository with an Apache-2.0 license, but the package is too new to demonstrate durable maintenance.

Latest 0.459.0PackagistPackagist

70%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

75

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

86

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

75

Health Score Breakdown

Release historycaution

This package was first published today and has only one release, so there is no release history yet to establish sustained maintenance. Its recency explains the absence of a longer record but does not compensate for it.

Repo commit activitycaution

The repository has no commits or active maintainers in the last three months. Because the package is only zero days old, this is mainly an unproven maintenance record rather than evidence of abandonment.

Repo toolingcaution

The repository uses Composer, appropriate for the package, but no security scanning tool was detected. For a newly published small metapackage this is a modest transparency gap, not a severe risk.

Security policycaution

No security policy was found in the linked repository, leaving vulnerability-reporting expectations unspecified.

Workflow auditcaution

No GitHub Actions workflows were present, so there were no workflow findings; this also provides no automated build or security assurance.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

No maintainer information available.

Direct Dependencies

DependencyLast ReleaseScore
tyhpdef/google-apiclient-services-dfareporting-impl
Version ~0.459.0.0
—
—

Weekly Downloads

Info

Last Published
13 hours ago
Created
13 hours ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform