PkgRadar

npm · registry.npmjs.org

@aurodesignsystem/auro-formkit

Large Javascript Payload: 4155751 bytes

Why PkgRadar flagged 5.12.1

SeveritySignalEvidence
mediumLarge Javascript Payload4155751 bytes · package/components/form/demo/customize.min.js
mediumLarge Javascript Payload4155751 bytes · package/components/form/demo/getting-started.min.js
mediumLarge Javascript Payload4155689 bytes · package/components/form/demo/index.min.js
mediumLarge Javascript Payload4134475 bytes · package/components/form/demo/registerDemoDeps.min.js

Scanned versions

VersionVerdictScoreScanned (UTC)
6.0.0-rc-1484.2Low risk02026-06-10
6.0.0-rc-1484.1Low risk02026-06-08
5.11.0-rc-1472.1Low risk02026-06-08
5.12.0Low risk02026-06-08
5.12.1Review122026-05-27
5.11.0-rc-1484.1Review122026-05-27

Block this in CI

PkgRadar gates @aurodesignsystem/auro-formkit (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @aurodesignsystem/[email protected]