The package is newly published, so its long-term maintenance record is not established yet. It has tests, matching source, a license, no install scripts, and organizational backing, which reduce immediate adoption concerns.
68%
Total Score
75
100
79
83
This is the first release and was published 0 days ago, so there is no release cadence or history demonstrating sustained maintenance. The recency makes this an uncertainty rather than evidence of abandonment.
There were 0 commits and 0 active maintainers in the last 3 months, but the repository and package are only 0 days old; this limits evidence of maintenance capacity without proving neglect.
Composer is used as a build tool, but no security-scanning tool was detected. That is a modest transparency and hygiene gap, not a standalone supply-chain failure.
The repository has no security policy. This weakens disclosure transparency, although the package's current age and focused implementation scope limit how strongly to weigh the gap.
Version 0.459.0.0 is not a prerelease, but the package has only one release, so stability across releases cannot yet be assessed.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
google/apiclient-services Version 0.459.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.