PkgRadar

npm · registry.npmjs.org

@icyfenix-dmla/install

Js Remote Npm Install

Why PkgRadar flagged 2026.6.23-2302

SeveritySignalEvidence
highJs Remote Npm Installpackage/src/modules/install.js

Showing signal labels only. Sign in to view the exact matched indicators for each finding.

Scanned versions

VersionVerdictScoreScanned (UTC)
2026.6.23-2302High risk452026-06-23
2026.6.21-2239High risk452026-06-23
2026.6.17-1432Low risk02026-06-17
2026.6.16-2237Low risk02026-06-17
2026.6.16-1647Low risk02026-06-16
2026.6.12-1043Low risk02026-06-12
2026.6.11-2135Low risk02026-06-11
2026.6.11-2036Low risk02026-06-11
2026.6.11-2018Low risk02026-06-11
2026.6.11-2001Low risk02026-06-11
2026.6.11-1945Low risk02026-06-11
2026.6.11-1919Low risk02026-06-11
2026.6.6-1021Low risk02026-06-06
2026.6.5-2100Low risk02026-06-05
2026.6.5-2055Low risk02026-06-05
2026.6.5-1204Low risk02026-06-05
2026.6.5-1719Low risk02026-06-05
2026.5.29-2149Low risk02026-05-29
2026.5.29-2018Low risk02026-05-29
2026.5.25-736Low risk02026-05-24
2026.5.24-2151Low risk02026-05-24
2026.5.24-2045Low risk02026-05-24
2026.5.24-16Low risk02026-05-24
2026.5.24-1015Low risk02026-05-24

Block this in CI

PkgRadar gates @icyfenix-dmla/install (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @icyfenix-dmla/[email protected]