PkgRadar

npm · registry.npmjs.org

@bdelab/roar-firekit

Remote Payload

Why PkgRadar flagged 9.15.3

SeveritySignalEvidence
mediumRemote Payloadpackage/lib/firekit.js

Showing signal labels only. Sign in to view the exact matched indicators for each finding.

Scanned versions

VersionVerdictScoreScanned (UTC)
9.15.3Review62026-06-25
9.15.4Review62026-06-25
9.16.3Review32026-06-25
9.17.0Review32026-06-25

Block this in CI

PkgRadar gates @bdelab/roar-firekit (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @bdelab/[email protected]