PkgRadar

npm · registry.npmjs.org

@edrlab/thorium-web

Remote Dependency Spec: dependencies.@edrlab/thorium-locales="github:edrlab/thorium-locales"

Why PkgRadar flagged 1.5.3

SeveritySignalEvidence
mediumRemote Dependency Specdependencies.@edrlab/thorium-locales="github:edrlab/thorium-locales" · package.json

Scanned versions

VersionVerdictScoreScanned (UTC)
1.5.3High risk82026-06-10
1.5.4High risk82026-06-10
1.5.1Review82026-05-27
1.5.2Review82026-05-27

Block this in CI

PkgRadar gates @edrlab/thorium-web (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @edrlab/[email protected]