PkgRadar

npm · registry.npmjs.org

@chevre/domain

Credential file access: matched ".aws"

Why PkgRadar flagged 24.1.0-alpha.33

SeveritySignalEvidence
highCredential file accessmatched ".aws" · package/lib/chevre/repo/person.js

Scanned versions

VersionVerdictScoreScanned (UTC)
24.1.0-alpha.59Low risk02026-06-13
24.1.0-alpha.58Low risk02026-06-12
24.1.0-alpha.57Low risk02026-06-11
24.1.0-alpha.56Low risk02026-06-11
24.0.0Low risk02026-06-10
24.1.0-alpha.55Low risk02026-06-10
24.1.0-alpha.54Low risk02026-06-09
24.1.0-alpha.53Low risk02026-06-08
24.1.0-alpha.52Low risk02026-06-07
24.1.0-alpha.51Low risk02026-06-05
24.1.0-alpha.49Low risk02026-06-04
24.1.0-alpha.50Low risk02026-06-04
24.1.0-alpha.48Low risk02026-06-03
24.1.0-alpha.47Low risk02026-06-03
24.1.0-alpha.46Low risk02026-06-02
24.1.0-alpha.45Low risk02026-06-01
24.1.0-alpha.44Low risk02026-06-01
24.1.0-alpha.43Low risk02026-05-31
24.1.0-alpha.42Low risk02026-05-31
24.1.0-alpha.41Low risk02026-05-29
24.1.0-alpha.39Low risk02026-05-29
24.1.0-alpha.40Low risk02026-05-29
24.1.0-alpha.38Low risk02026-05-28
24.1.0-alpha.36Low risk02026-05-27
24.1.0-alpha.37Low risk02026-05-27
24.1.0-alpha.35Low risk02026-05-26
24.1.0-alpha.34Low risk02026-05-25
24.1.0-alpha.33Review302026-05-24
24.1.0-alpha.31Review302026-05-24
24.1.0-alpha.32Review302026-05-24

Related campaigns

Block this in CI

PkgRadar gates @chevre/domain (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @chevre/[email protected]