npm · registry.npmjs.org
@edium/halifax-client
Install Lifecycle Remote Or Exec: preinstall="node -e \"const ua = process.env.npm_config_user_agent; if (ua && !ua.startsWith('pnpm')) { console.error('\\nERROR: This repo requires pnpm. Run: pnpm install\\n'); process.exit(1); }\""
Why PkgRadar flagged 2.2.1
| Severity | Signal | Evidence |
|---|---|---|
| high | Install Lifecycle Remote Or Exec | preinstall="node -e \"const ua = process.env.npm_config_user_agent; if (ua && !ua.startsWith('pnpm')) { console.error('\\nERROR: This repo requires pnpm. Run: pnpm install\\n'); process.exit(1); }\"" · package.json |
| high | New Account With Lifecycle Hook | package first published 0 day(s) ago, 2 total version(s), has lifecycle hook · package.json |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
2.3.0 | Low risk | 0 | 2026-06-15 |
2.2.4 | Low risk | 0 | 2026-06-15 |
2.2.3 | Low risk | 0 | 2026-06-15 |
2.2.2 | Low risk | 0 | 2026-06-15 |
2.2.1 | High risk | 35 | 2026-06-15 |
2.2.0 | High risk | 35 | 2026-06-15 |
Campaign attribution
Related campaigns
- splayfee — 4 releases, max score 75
Block this in CI
pkgradar gate --ecosystem npm @edium/[email protected]