PkgRadar

npm · registry.npmjs.org

@goreleaser/nfpm

Install-time lifecycle script

Scanned versions

VersionVerdictScoreScanned (UTC)
2.46.1Review12026-06-20
2.46.2Review12026-06-20
2.46.3Review12026-06-20
2.47.0Review12026-06-20

Block this in CI

PkgRadar gates @goreleaser/nfpm (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @goreleaser/[email protected]