The package includes tests, an Apache-2.0 license, and a focused dependency profile. Its organization-owned repository is correctly named, but there is no security scanning or policy evidence yet.
62%
Total Score
75
80
50
This package is newly published, with only one release and an age of 0 days. That is not evidence of abandonment, but it leaves release maturity and long-term maintenance unproven.
The repository has recorded 0 commits and 0 active maintainers in the last 3 months. Because the package was created today, this is consistent with a new project but provides no maintenance track record.
Composer is used as the build tool, which is appropriate for a Packagist package, but no security-scanning tool was detected. The missing scan coverage is a modest transparency and maintenance concern.
The linked repository has no security policy. This does not show a security defect, but it provides less guidance for reporting and handling issues if the package is adopted.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
google/apiclient-services Version 0.459.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.