The package is clearly identified, licensed, and has a focused Composer dependency with no install-time scripts. It is brand new, so maintenance history and security-process evidence are still limited.
82%
Total Score
75
100
86
88
This is the first recorded release and the package is 0 days old, so there is no release track record yet. That limits maturity evidence but does not indicate abandonment for a newly published package.
The repository has no commits or active maintainers in the last 3 months, but the package and repository were created only 0 days ago. This is insufficient history rather than evidence of a collapsed project.
Composer is used as the build tool, fitting the package ecosystem. No security scanning tool is configured, leaving a modest security-process gap.
The repository has no security policy. For a small type-definition metapackage this is a minor transparency gap, not a severe adoption blocker.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
tyhpdef/google-apiclient-services-orgpolicyapi-impl Version ~0.459.0.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.