The package has tests, a matching organization-owned repository, a declared Apache-2.0 license, and no install-time scripts. Security coverage is limited because the repository has no security policy or scanning tools, so adoption should be conservative until it has a longer operating record.
65%
Total Score
75
100
79
83
This is the first recorded release, published 0 days ago, so there is no release cadence or history demonstrating sustained maintenance. Its newness is a meaningful uncertainty rather than evidence of abandonment by itself.
The repository has 0 commits and 0 active maintainers in the last 3 months, consistent with its same-day creation but leaving no observed maintenance track record.
Composer build tooling is present, but no security scanning tools are configured. The missing scanning is a hygiene gap, not a severe dependency risk on its own.
The repository has no security policy, leaving vulnerability-reporting expectations and handling procedures unclear. This is a transparency gap for a package intended to be installed as a dependency.
The release is not marked prerelease, but the 0.x version indicates an API that may still evolve. No prior releases are available to establish stability.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
google/apiclient-services Version 0.459.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.