PkgRadar

npm · registry.npmjs.org

@hegemonart/get-design-done

Remote Payload: matched "curl "

Why PkgRadar flagged 1.57.1

SeveritySignalEvidence
mediumRemote Payloadmatched "curl " · package/hooks/update-check.sh

Scanned versions

VersionVerdictScoreScanned (UTC)
1.60.1Low risk02026-06-10
1.60.0Low risk02026-06-10
1.59.9Low risk02026-06-10
1.59.8Low risk02026-06-10
1.59.4Low risk02026-06-10
1.59.7Low risk02026-06-05
1.59.5Low risk02026-06-04
1.59.6Low risk02026-06-04
1.58.0Low risk02026-06-04
1.58.1Low risk02026-06-04
1.57.3Low risk02026-06-04
1.57.2Low risk02026-06-04
1.57.1Review32026-06-03
1.57.0Review32026-06-03
1.56.0Review32026-06-03
1.55.0Review32026-06-03
1.54.0Review32026-06-03
1.53.0Review32026-06-03
1.52.0Review32026-06-03
1.51.0Review32026-06-03
1.50.1Review32026-06-03
1.50.0Review32026-06-03
1.49.0Review32026-06-02
1.48.0Review32026-06-02
1.47.0Review32026-06-02
1.46.0Review32026-06-02
1.45.0Review32026-06-02
1.43.0Review32026-06-02
1.44.0Review32026-06-02
1.42.0Review32026-06-02
1.41.5Review32026-06-02
1.41.0Review32026-06-02
1.40.0Review32026-06-01
1.40.5Review32026-06-01
1.36.2Review32026-06-01
1.36.3Review32026-06-01
1.35.3Review32026-06-01
1.35.2Review32026-06-01
1.35.1Review32026-06-01
1.34.4Review32026-06-01
1.34.3Review32026-05-31
1.34.2Review32026-05-31
1.34.1Review32026-05-31
1.33.6Review32026-05-31
1.33.5Review32026-05-31
1.33.0Review32026-05-30
1.32.0Review32026-05-30
1.31.5Review32026-05-30
1.31.0Review32026-05-29
1.30.6Review32026-05-28
1.30.5Review32026-05-28

Block this in CI

PkgRadar gates @hegemonart/get-design-done (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @hegemonart/[email protected]