Its Apache-2.0 license, tests, and organization-owned repository provide useful baseline transparency. The absence of a security policy and the lack of observed activity make longer-term support uncertain.
62%
Total Score
75
100
81
88
This is the first recorded release and the package is 0 days old, so there is no release track record or demonstrated maintenance cadence yet.
No commits or active maintainers were observed in the last 3 months. Because the package is newly released, this is partly explained by its age, but it still leaves maintenance capacity unproven.
Composer is used as the build tool, but no security scanning tooling was detected. This is a modest transparency and assurance gap.
The repository has no security policy. This does not show a vulnerability, but it weakens the project's documented process for handling security reports.
The release is not marked prerelease, but there is only one version available, so stability across releases cannot yet be demonstrated.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
google/apiclient-services Version 0.459.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.