PkgRadar

npm · registry.npmjs.org

@braintrust/pi-extension

Install Lifecycle Remote Or Exec: preinstall="node -e \"const userAgent = process.env.npm_config_user_agent || ''; if (process.env.INIT_CWD === process.cwd() && !userAgent.includes('pnpm/')) { console.error('Use pnpm in this repo.'); process.exit(1); }\""

Why PkgRadar flagged 0.7.0

SeveritySignalEvidence
highInstall Lifecycle Remote Or Execpreinstall="node -e \"const userAgent = process.env.npm_config_user_agent || ''; if (process.env.INIT_CWD === process.cwd() && !userAgent.includes('pnpm/')) { console.error('Use pnpm in this repo.'); process.exit(1); }\"" · package.json

Scanned versions

VersionVerdictScoreScanned (UTC)
0.7.0Review102026-06-02
0.5.1Review12026-05-26
0.6.0Review12026-05-26

Block this in CI

PkgRadar gates @braintrust/pi-extension (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @braintrust/[email protected]