npm · registry.npmjs.org
@cdx-forge/cli
Shell Credential File Read, Credential file access
Why PkgRadar flagged 0.1.0-beta.7
| Severity | Signal | Evidence |
|---|---|---|
| high | Shell Credential File Read | — |
| high | Credential file access | — |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
0.1.0-beta.7 | High risk | 75 | 2026-06-29 |
0.1.0-beta.5 | High risk | 80 | 2026-06-29 |
0.1.0-beta.6 | High risk | 80 | 2026-06-29 |
0.1.0-beta.4 | High risk | 80 | 2026-06-29 |
Related campaigns
- Credential file access — 1750 releases, max score 350
- Shell Credential File Read — 93 releases, max score 164
Block this in CI
pkgradar gate --ecosystem npm @cdx-forge/[email protected]