The package has tests, a matching repository, a clear Apache-2.0 license, and no install-time scripts. Its organization-backed repository has no security policy or scanning, so long-term maintenance assurance remains limited.
70%
Total Score
75
100
81
88
This is the package's first and only release, published less than a day ago. That is not evidence of abandonment, but it provides no track record for maintenance or release reliability.
There were no commits in the last three months and no active maintainers reported. Because the repository was created less than a day ago, this is better explained by its newness than by demonstrated abandonment.
Composer is used as the build tool, but no security scanning tool is reported. That is a modest transparency and maintenance gap, not a standalone adoption blocker.
The repository has no security policy, leaving vulnerability-reporting expectations and response procedures unspecified.
The release is not marked prerelease, but the 0.x version indicates the API may still evolve and the package has no release history to demonstrate stability.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
google/apiclient-services Version 0.459.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.