PkgRadar

npm · registry.npmjs.org

@gala-chain/cli

Obfuscation Density: high encoded/escaped-token density

Why PkgRadar flagged 3.1.1

SeveritySignalEvidence
mediumObfuscation Densityhigh encoded/escaped-token density · package/lib/chaincode-template/package-lock.json
mediumRemote Payloadmatched "curl " · package/lib/chaincode-template/rest-api-samples.sh

Scanned versions

VersionVerdictScoreScanned (UTC)
3.1.1Review122026-05-27
3.1.2Review122026-05-27

Block this in CI

PkgRadar gates @gala-chain/cli (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @gala-chain/[email protected]