PkgRadar

npm · registry.npmjs.org

@aikdna/kdna

Remote Payload: matched "curl "

Why PkgRadar flagged 0.8.1

SeveritySignalEvidence
mediumRemote Payloadmatched "curl " · package/node_modules/@aikdna/kdna-cli/src/install.js
mediumRemote Payloadmatched "raw.githubusercontent.com" · package/node_modules/@aikdna/kdna-cli/src/setup.js

Scanned versions

VersionVerdictScoreScanned (UTC)
0.8.1Review242026-05-28
0.8.2Low risk02026-05-28

Block this in CI

PkgRadar gates @aikdna/kdna (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @aikdna/[email protected]