PkgRadar

npm · registry.npmjs.org

@amirjalili1374/ui-kit

Js Split Join Obfuscation: Array-of-single-tokens joined to form a string — used to obscure module names like require(["n","o","de",":","cr","yp","to"].join("")), defeating static require() analysis.

Why PkgRadar flagged 1.6.8

SeveritySignalEvidence
highJs Split Join ObfuscationArray-of-single-tokens joined to form a string — used to obscure module names like require(["n","o","de",":","cr","yp","to"].join("")), defeating static require() analysis. · package/dist/ui-kit.cjs.js

Scanned versions

VersionVerdictScoreScanned (UTC)
1.6.18Low risk02026-06-13
1.6.17Low risk02026-06-13
1.6.16Low risk02026-06-13
1.6.14Low risk02026-06-13
1.6.15Low risk02026-06-13
1.6.13Low risk02026-06-13
1.6.12Low risk02026-06-08
1.6.11Low risk02026-06-08
1.6.10Low risk02026-06-08
1.6.9Low risk02026-06-08
1.6.8Review282026-06-05
1.6.6Low risk02026-06-03
1.6.7Low risk02026-06-03
1.5.98Review282026-06-01
1.5.99Review282026-06-01
1.5.96Review282026-05-31
1.5.95Review282026-05-31
1.5.94Review282026-05-31
1.5.93Review282026-05-31
1.5.92Review282026-05-31
1.5.91Review282026-05-31
1.5.90Review282026-05-31
1.5.88Review282026-05-30
1.5.89Review282026-05-30
1.5.87Review282026-05-30
1.5.85Low risk02026-05-27
1.5.86Review72026-05-27
1.5.79Low risk02026-05-25
1.5.76Low risk02026-05-25
1.5.77Low risk02026-05-25
1.5.75Low risk02026-05-24
1.5.74Low risk02026-05-24
1.5.73Low risk02026-05-24
1.5.72Low risk02026-05-24
1.5.70Low risk02026-05-24
1.5.69Low risk02026-05-24
1.5.68Low risk02026-05-24
1.5.67Low risk02026-05-24
1.5.66Low risk02026-05-24
1.5.65Low risk02026-05-24
1.5.64Low risk02026-05-24
1.5.63Low risk02026-05-24
1.5.62Low risk02026-05-24
1.5.61Low risk02026-05-24
1.5.59Low risk02026-05-24
1.5.60Low risk02026-05-24

Block this in CI

PkgRadar gates @amirjalili1374/ui-kit (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @amirjalili1374/[email protected]