PkgRadar

npm · registry.npmjs.org

@edifice.io/bootstrap

Manifest Codeless Dependency Stub: package ships no JS/TS source but declares 2 dependency(ies) (0 with loose/empty version specs) — dependency-confusion / install-chain loader shape

Why PkgRadar flagged 2.5.21-feat-ENABLING-722.20260616104156

SeveritySignalEvidence
mediumManifest Codeless Dependency Stubpackage ships no JS/TS source but declares 2 dependency(ies) (0 with loose/empty version specs) — dependency-confusion / install-chain loader shape · package.json

Scanned versions

VersionVerdictScoreScanned (UTC)
2.5.21-feat-ENABLING-722.20260616104156Review72026-06-16
2.5.22-develop.20260615185517Review72026-06-15
2.5.21-epic-homepage.20260615150310Review72026-06-15
2.5.22-develop.20260615120808Review72026-06-15
2.5.21-epic-homepage.20260610090708Review72026-06-10
2.5.22-develop-b2school.20260608181736Review72026-06-08
2.5.21-epic-homepage.20260608150459Review72026-06-08
2.5.21-epic-homepage.20260608142302Review72026-06-08
2.5.21-develop-pedago.20260608132300Review72026-06-08
2.5.21-epic-homepage.20260608115750Review72026-06-08
2.5.21-epic-homepage.20260608115419Review72026-06-08
2.5.21-epic-homepage.20260605185233Review72026-06-05
2.5.21-epic-homepage.20260605161148Review72026-06-05
2.5.21-epic-homepage.20260605144402Review72026-06-05
2.5.22Review72026-06-05
2.5.21-develop-pedago.20260603143047Review72026-06-03
2.5.21-develop.20260603145641Review72026-06-03
2.5.21-epic-homepage.20260602143131Review72026-06-02
2.5.21-epic-homepage.20260602145748Review72026-06-02
2.5.21-epic-homepage.20260601163426Review72026-06-01
2.5.21-develop-enabling.20260601174110Review72026-06-01
2.5.21-epic-homepage.20260527164027Low risk02026-05-27
2.5.21-develop.20260526135535Low risk02026-05-26
2.5.21-develop-enabling.20260526123229Low risk02026-05-26

Block this in CI

PkgRadar gates @edifice.io/bootstrap (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @edifice.io/[email protected]