PkgRadar

npm · registry.npmjs.org

@dev.sail.money/sailor

Large Javascript Payload: 2171868 bytes

Why PkgRadar flagged 1.1.0-43

SeveritySignalEvidence
mediumSuspicious Publish Context{"package_age_days":7,"publisher":"jmad-sail","burst_same_day":2,"burst_week":2,"lure":null,"version_anomaly":false,"new_account":false}

Scanned versions

VersionVerdictScoreScanned (UTC)
1.1.0-43Review102026-06-12
1.0.0-42Review102026-06-12
1.0.0-41Review102026-06-12
1.0.0-40Review102026-06-12
1.0.0-39Review102026-06-12
1.0.0-38Review102026-06-12
0.0.2-35Low risk02026-06-11
0.0.2-34Low risk02026-06-11
0.1.0-localLow risk02026-06-11
0.0.2-31Low risk02026-06-11
0.0.2-30Low risk02026-06-11
0.0.2-29Low risk02026-06-11
0.0.2-28Low risk02026-06-11
0.0.2-27Low risk02026-06-11
0.0.2-24Low risk02026-06-10
0.0.2-23Low risk02026-06-10
0.0.2-22Low risk02026-06-09
0.0.2-21Low risk02026-06-09
0.0.2-20Low risk02026-06-09
0.0.2-19Low risk02026-06-08
0.0.2-18Low risk02026-06-06
0.0.2-17Low risk02026-06-06
0.0.2-16Low risk02026-06-06
0.0.2-15Low risk02026-06-06
0.0.2-13Low risk02026-06-06
0.0.2-12Low risk02026-06-05
0.0.2Low risk02026-06-05

Block this in CI

PkgRadar gates @dev.sail.money/sailor (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @dev.sail.money/[email protected]