PkgRadar

npm · registry.npmjs.org

@graphql-hive/gateway-plugin-console-sdk

Suspicious Publish Context: {"package_age_days":3,"publisher":"theguild-bot","burst_same_day":1,"burst_week":5,"lure":{"kind":"token_affix","target":"graphql"},"version_anomaly":false,"new_account":false}

Why PkgRadar flagged 0.1.0-alpha-20260612231313-3b03aa0a1cfd7c59e95bf2849f17005ca7b6817e

SeveritySignalEvidence
mediumSuspicious Publish Context{"package_age_days":3,"publisher":"theguild-bot","burst_same_day":1,"burst_week":5,"lure":{"kind":"token_affix","target":"graphql"},"version_anomaly":false,"new_account":false}

Scanned versions

VersionVerdictScoreScanned (UTC)
0.1.0-alpha-20260612231313-3b03aa0a1cfd7c59e95bf2849f17005ca7b6817eReview102026-06-12
0.1.0-alpha-20260612224233-4131b256f40e5a30cd7f92113bec2b3c87d8aea4Review102026-06-12
0.1.0-alpha-20260612220429-6575cf9d726df9e80f31e82dfc0106a1ceabe841Review102026-06-12
0.1.0-alpha-20260612210600-50eb5356c424bc1c17e7107993029630a0639450Review102026-06-12
0.1.0-alpha-20260612034321-9e65db9970cb28617a31cb7de0cecf13b7aa914fReview102026-06-12
0.1.0-alpha-20260612183115-6fae88d11c893eab19a9ef2020854fed9563abedReview102026-06-12
0.1.0-alpha-20260612032156-ce926bced9eb73c874d6cb3985c8a860ddf2a783Low risk02026-06-12
0.1.0-alpha-20260611230431-bf8711f952afb55105ed297566ef6da928af2483Low risk02026-06-12
0.1.0-alpha-20260612024651-be1ead7edfea560c8e3083bddc3956f690dac2d9Low risk02026-06-12
0.0.1-alpha-20260611030643-e5d8e751052d9e5d15395c06491831c4dd46bb2aLow risk02026-06-11
0.1.0-alpha-20260611214155-8d31d1f4b85d27778c7d7e6d162ce27501903a4bLow risk02026-06-11
0.0.1-alpha-20260611002511-ed976571c91b7a72625a5872e806d47f4e292bdfLow risk02026-06-11
0.0.1-alpha-20260610233027-49c0378ac19a86d5d238100cd51c76c188272e8fLow risk02026-06-10
0.1.1-alpha-20260610143041-a25787b0f935bbc487f60d26897f5130b818392bLow risk02026-06-10
0.1.1-alpha-20260609201309-8a26fb15ad5584191a49b794225ba4391ec562bcLow risk02026-06-10
0.1.1-alpha-20260610031900-d71e1454d178bd67b9098bd40add114d9a4fe19cLow risk02026-06-10

Block this in CI

PkgRadar gates @graphql-hive/gateway-plugin-console-sdk (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @graphql-hive/gateway-plugin-console-sdk@0.1.0-alpha-20260612231313-3b03aa0a1cfd7c59e95bf2849f17005ca7b6817e