PkgRadar

npm · registry.npmjs.org

@gobob/gateway-cli

Remote Dependency Spec: dependencies.@gobob/tokenlist="github:bob-collective/tokenlist#5ee721890cb91657f640440a05698c357a080c87"

Why PkgRadar flagged 0.1.5

SeveritySignalEvidence
mediumRemote Dependency Specdependencies.@gobob/tokenlist="github:bob-collective/tokenlist#5ee721890cb91657f640440a05698c357a080c87" · package.json

Scanned versions

VersionVerdictScoreScanned (UTC)
0.1.5Review32026-06-19
0.1.5-rc0Review32026-06-19
0.1.6Review32026-06-19
0.1.7Review32026-06-19

Block this in CI

PkgRadar gates @gobob/gateway-cli (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @gobob/[email protected]