The package has tests, a clear Apache-2.0 license, organization backing, and no install-time scripts. Its maintenance record is too new to establish reliability, and the repository has no security policy or scanning tooling.
61%
Total Score
75
80
75
This is the first release, published less than one hour before collection, so there is no release history or cadence to demonstrate dependable maintenance.
The repository has recorded no commits or active maintainers in the last three months, although the repository itself was only created or updated on the collection date; this leaves maintenance capacity unproven rather than showing clear abandonment.
Composer is used for builds, which is appropriate, but no security-scanning tools are present. This is a modest supply-chain hygiene gap, not evidence that the package is unsafe.
The repository has no security policy, which reduces disclosure transparency; the package's very small, generated-looking file tree limits the significance of this gap but does not remove it.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
google/apiclient-services Version 0.459.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.