PkgRadar

npm · registry.npmjs.org

@0byte/oc_git_review_plugin

Credential file access

Why PkgRadar flagged 0.1.15

SeveritySignalEvidence
highCredential file accesspackage/build/index.js

Showing signal labels only. Sign in to view the exact matched indicators for each finding.

Scanned versions

VersionVerdictScoreScanned (UTC)
0.1.15Review302026-06-25
0.1.14Review302026-06-25
0.1.10Review302026-06-25
0.1.11Review302026-06-25
0.1.12Review302026-06-25
0.1.13Review302026-06-25

Block this in CI

PkgRadar gates @0byte/oc_git_review_plugin (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @0byte/[email protected]