PkgRadar

npm · registry.npmjs.org

@bymbly/api-tools

Known Indicator Filename: package/dist/lib/asyncapi/bundle.js

Why PkgRadar flagged 1.4.46

SeveritySignalEvidence
highKnown Indicator Filenamepackage/dist/lib/asyncapi/bundle.js · package/dist/lib/asyncapi/bundle.js
highKnown Indicator Filenamepackage/dist/lib/redocly/bundle.js · package/dist/lib/redocly/bundle.js

Scanned versions

VersionVerdictScoreScanned (UTC)
1.4.51Low risk02026-06-10
1.4.50Low risk02026-06-09
1.4.49Low risk02026-06-03
1.4.48Low risk02026-05-29
1.4.47Low risk02026-05-29
1.4.46Review272026-05-26
1.4.44Review272026-05-26
1.4.45Review272026-05-26

Block this in CI

PkgRadar gates @bymbly/api-tools (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @bymbly/[email protected]