PkgRadar

npm · registry.npmjs.org

@momo-kits/foundation

Remote Dependency Spec: dependencies.react-native-fast-image="git+https://oauth2:[email protected]/momo-platform/public/react-native-fast-image.git#v8.11.0"

Why PkgRadar flagged 0.161.2-beta.8

SeveritySignalEvidence
mediumRemote Dependency Specdependencies.react-native-fast-image="git+https://oauth2:[email protected]/momo-platform/public/react-native-fast-image.git#v8.11.0" · package.json
mediumRemote Dependency Specdependencies.react-native-linear-gradient="git+https://oauth2:[email protected]/momo-platform/public/react-native-linear-gradient#v3.0.0" · package.json

Scanned versions

VersionVerdictScoreScanned (UTC)
0.157.1-expo.33Low risk02026-06-10
0.161.2-beta.8Review122026-06-10
0.161.2-beta.7Review122026-06-10
0.158.1-beta.2Review122026-06-10
0.161.2-beta.6Review122026-06-10
0.161.2-beta.5Review122026-06-09
0.160.1-beta.14Review122026-06-09
0.160.1-beta.12Review122026-06-08
0.160.1-beta.10Review122026-06-08
0.161.2-beta.1Review122026-06-08
0.161.1-beta.2Review242026-05-25
0.160.1-beta.9Review242026-05-25

Block this in CI

PkgRadar gates @momo-kits/foundation (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @momo-kits/[email protected]