PkgRadar

npm · registry.npmjs.org

@chakramcp/cli

New Account With Lifecycle Hook: package first published 26 day(s) ago, 10 total version(s), has lifecycle hook

Why PkgRadar flagged 0.1.9

SeveritySignalEvidence
mediumNew Account With Lifecycle Hookpackage first published 26 day(s) ago, 10 total version(s), has lifecycle hook · package.json

Scanned versions

VersionVerdictScoreScanned (UTC)
0.1.9Review52026-06-09
0.1.8Review52026-06-08
0.1.7Review52026-06-08
0.1.6Review52026-06-07
0.1.5Review52026-06-06
0.1.3Review52026-05-30
0.1.4Review52026-05-30

Block this in CI

PkgRadar gates @chakramcp/cli (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @chakramcp/[email protected]
@chakramcp/cli — npm security scan | PkgRadar