PkgRadar

npm · registry.npmjs.org

@codingfactory/mediables-vue

Install-time lifecycle script: preinstall="npx only-allow pnpm"

Why PkgRadar flagged 2.21.1

SeveritySignalEvidence
highInstall-time lifecycle scriptpreinstall="npx only-allow pnpm" · package.json
mediumLarge Javascript Payload2526495 bytes · package/dist/render-page/assets/index-Blc3wE9X.js

Scanned versions

VersionVerdictScoreScanned (UTC)
2.21.1Review152026-05-25
2.22.0Review152026-05-25

Block this in CI

PkgRadar gates @codingfactory/mediables-vue (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @codingfactory/[email protected]