PkgRadar

npm · registry.npmjs.org

@graphprotocol/graph-cli

Remote Payload: matched "github.com/LimeChain/matchstick/releases/download"

Why PkgRadar flagged 0.99.0-alpha-20260615205935-ba8990fd57189b632f56738ec9e108f51940a3a1

SeveritySignalEvidence
mediumRemote Payloadmatched "github.com/LimeChain/matchstick/releases/download" · package/dist/commands/test.js

Scanned versions

VersionVerdictScoreScanned (UTC)
0.99.0-alpha-20260615205935-ba8990fd57189b632f56738ec9e108f51940a3a1Review32026-06-15
0.99.0-alpha-20260615095610-70662bb3c640988a17807e9e0ffc257a43ca5ec2Review32026-06-15
0.99.0-alpha-20260612233802-763c89bc5023adaa67f21b4ebb58dc720824ddf3Review32026-06-15
0.99.0-alpha-20260611180253-0de857a6501851e393f2fb07fb7223a58bc0f9d4Review32026-06-12
0.99.0-alpha-20260611180135-e393ed69463b9f7af49ca4a3eb3767311040c711Review32026-06-11
0.99.0-alpha-20260611180023-f881a5b0ff3bd5efedb599a1b945446f63b2d60cReview32026-06-11
0.99.0-alpha-20260610225551-6a037920e123b8b01827b2fb80dccb902d77a788Review32026-06-11
0.99.0-alpha-20260611175826-99218e74d19d2f8db8cb66f781c5ccb957f4fd79Review32026-06-11
0.22.0-alpha.0Low risk02026-06-10
0.98.1Review32026-06-10
0.30.0-alpha.1Review72026-06-10
0.29.2Review72026-06-10
0.99.0-alpha-20260608025509-75e5db6c59fc258e9cdadd179a732a88c80f941cReview32026-06-08
0.99.0-alpha-20260606020126-3e0c53e8ec0c3d6cb7fb7d470b576ae7817df86aReview32026-06-06
0.99.0-alpha-20260604114506-50bd53cd854305abec20962b16e15cfb0654e4a4Review32026-06-04
0.99.0-alpha-20260601175303-079051c63c103b33ad1043d9f153f60b6ee9f4b3Review32026-06-01
0.99.0-alpha-20260601175518-ac21f4ee64328358f010cf3603fdf00efc20f188Review32026-06-01
0.99.0-alpha-20260529224201-fd365ff1cce1eab83d62c68bbad90ca53966923eReview32026-05-29
0.99.0-alpha-20260528214049-a39052bcad8d35f838f8f95edf5a4aa55005959dReview32026-05-29
0.99.0-alpha-20260528214233-0e87adbe9a91a3339f313c6e74de38a2ada0f557Review32026-05-29
0.98.2-alpha-20260527001119-16365511fcdcc408bd1e124b36506ef3443d2a58Review32026-05-27
0.99.0-alpha-20260527001210-6d690ebba5f3a84658701b27a9458b9e02a99400Review32026-05-27

Block this in CI

PkgRadar gates @graphprotocol/graph-cli (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @graphprotocol/graph-cli@0.99.0-alpha-20260615205935-ba8990fd57189b632f56738ec9e108f51940a3a1