PkgRadar

npm · registry.npmjs.org

@ashubashir/electron-panel-window

Install Lifecycle Repeated Payload: install,postinstall="npm run patch && node-gyp rebuild --release --target=42.4.1 --dist-url=https://electronjs.org/headers"

Why PkgRadar flagged 1.0.16

SeveritySignalEvidence
highInstall Lifecycle Repeated Payloadinstall,postinstall="npm run patch && node-gyp rebuild --release --target=42.4.1 --dist-url=https://electronjs.org/headers" · package.json

Scanned versions

VersionVerdictScoreScanned (UTC)
1.0.16High risk242026-06-20
1.0.18High risk242026-06-20
1.0.17High risk242026-06-20
1.0.15High risk502026-06-20
1.0.11Review32026-06-19
1.0.14Review32026-06-19
1.0.13Review32026-06-19
1.0.12Review32026-06-19

Block this in CI

PkgRadar gates @ashubashir/electron-panel-window (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @ashubashir/[email protected]