PkgRadar

npm · registry.npmjs.org

@codemation/core-nodes

DNS / OAST exfiltration: matched "dns.lookup"

Why PkgRadar flagged 0.8.1

SeveritySignalEvidence
highDNS / OAST exfiltrationmatched "dns.lookup" · package/dist/index.js
highDNS / OAST exfiltrationmatched "dns.lookup" · package/src/http/SsrfGuard.ts

Scanned versions

VersionVerdictScoreScanned (UTC)
0.10.2Low risk02026-06-04
0.10.1Low risk02026-06-04
0.10.0Low risk02026-06-03
0.9.0Low risk02026-05-30
0.8.0Low risk02026-05-30
0.8.1Review152026-05-25

Block this in CI

PkgRadar gates @codemation/core-nodes (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @codemation/[email protected]