npm · registry.npmjs.org
@financial-times/sass
Remote Payload, Install-time lifecycle script
Why PkgRadar flagged 1.32.0
| Severity | Signal | Evidence |
|---|---|---|
| medium | Remote Payload | package/update.js |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
1.32.0 | Review | 11 | 2026-06-23 |
1.32.2 | Review | 11 | 2026-06-23 |
1.32.3 | Review | 11 | 2026-06-23 |
1.32.4 | Review | 11 | 2026-06-23 |
Block this in CI
pkgradar gate --ecosystem npm @financial-times/[email protected]