PkgRadar

npm · registry.npmjs.org

@alook/app

Remote Payload: matched "github.com/FiloSottile/mkcert/releases/download"

Why PkgRadar flagged 0.0.143

SeveritySignalEvidence
mediumRemote Payloadmatched "github.com/FiloSottile/mkcert/releases/download" · package/bundled/web/.open-next/server-functions/default/node_modules/.pnpm/[email protected]_@[email protected]_@[email protected][email protected][email protected][email protected]/node_modules/next/dist/lib/mkcert.js

Scanned versions

VersionVerdictScoreScanned (UTC)
0.0.143Review32026-06-13
0.0.141Review32026-06-12
0.0.140Review32026-06-11
0.0.139Review32026-06-11
0.0.138Review32026-06-11
0.0.137Review32026-06-10
0.0.136Review32026-06-10
0.0.135Review32026-06-10
0.0.134Review32026-06-10
0.0.133Review32026-06-10
0.0.132Review32026-06-10
0.0.131Review32026-06-10
0.0.130Review32026-06-10
0.0.129Review32026-06-10
0.0.128Review32026-06-10
0.0.127Review32026-06-10
0.0.125Review32026-06-10
0.0.126Review32026-06-10
0.0.124Review32026-06-09
0.0.123Review32026-06-09
0.0.122Review32026-06-05
0.0.120Review32026-06-04
0.0.121Review32026-06-04
0.0.118Review32026-06-04
0.0.119Review32026-06-04
0.0.116Review32026-06-03
0.0.117Review32026-06-03
0.0.115Review32026-06-02
0.0.114Review32026-06-02
0.0.113Review32026-06-02
0.0.112Review32026-06-01
0.0.111Review32026-06-01
0.0.110Review32026-05-31
0.0.109Review32026-05-30
0.0.108Review32026-05-30
0.0.107Review32026-05-29
0.0.106Review32026-05-29
0.0.105Review32026-05-29
0.0.104Review322026-05-28
0.0.103Review172026-05-27
0.0.101Review172026-05-26
0.0.102Review172026-05-26
0.0.100Review172026-05-26
0.0.99Review582026-05-25
0.0.97Review702026-05-25
0.0.98Review702026-05-25
0.0.96Review562026-05-25
0.0.95Review1182026-05-24
0.0.91Review1182026-05-24
0.0.94Review1182026-05-24

Block this in CI

PkgRadar gates @alook/app (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @alook/[email protected]