PkgRadar

npm · registry.npmjs.org

@a-company/paradigm

Remote Payload: matched "raw.githubusercontent.com"

Why PkgRadar flagged 6.6.6

SeveritySignalEvidence
mediumRemote Payloadmatched "raw.githubusercontent.com" · package/dist/chunk-Y4XFVDZC.js

Scanned versions

VersionVerdictScoreScanned (UTC)
6.6.6Review122026-06-01
6.6.3Review122026-05-30
6.6.2Review122026-05-30
6.6.0Review622026-05-26
6.6.1Review622026-05-26

Block this in CI

PkgRadar gates @a-company/paradigm (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @a-company/[email protected]
@a-company/paradigm — npm security scan | PkgRadar