PkgRadar

npm · registry.npmjs.org

@indfnd/common-mobile-pro

Remote Dependency Spec: devDependencies.ag-grid-community="git+http://zhangwenjie:[email protected]/ind-fnd/npmgroup/ag-grid-community.git"

Why PkgRadar flagged 1.0.87

SeveritySignalEvidence
mediumRemote Dependency SpecdevDependencies.ag-grid-community="git+http://zhangwenjie:[email protected]/ind-fnd/npmgroup/ag-grid-community.git" · package.json
mediumRemote Dependency SpecdevDependencies.ag-grid-enterprise="git+http://zhangwenjie:[email protected]/ind-fnd/npmgroup/ag-grid-enterprise.git" · package.json
mediumRemote Dependency SpecdevDependencies.gy-vue-loader="git+http://zhangwenjie:[email protected]/ind-fnd/npmgroup/gy-vue-loader.git" · package.json

Scanned versions

VersionVerdictScoreScanned (UTC)
1.0.87Review122026-06-11
1.0.83Review122026-06-10
1.0.86Review122026-06-10
1.0.84Review122026-05-29
1.0.85Review122026-05-29

Block this in CI

PkgRadar gates @indfnd/common-mobile-pro (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @indfnd/[email protected]
@indfnd/common-mobile-pro — npm security scan | PkgRadar