npm · registry.npmjs.org
@namncqualgo/secure-code-mcp
DNS / OAST exfiltration: matched "oastify.com"
Why PkgRadar flagged 0.3.0
| Severity | Signal | Evidence |
|---|---|---|
| high | DNS / OAST exfiltration | matched "oastify.com" · package/data/vulnerabilities/osv/pypi/GHSA-f776-fp4w-266c.json |
| high | DNS / OAST exfiltration | matched "oastify.com" · package/data/vulnerabilities/osv/npm/GHSA-p4fx-23fq-jfg6.json |
| high | DNS / OAST exfiltration | matched "oastify.com" · package/data/vulnerabilities/osv/npm/MAL-2025-49410.json |
| high | DNS / OAST exfiltration | matched "oastify.com" · package/data/vulnerabilities/osv/npm/MAL-2026-3724.json |
| high | DNS / OAST exfiltration | matched "oastify.com" · package/data/vulnerabilities/osv/npm/MAL-2026-3749.json |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
0.3.0 | High risk | 139 | 2026-06-10 |
0.2.0 | High risk | 139 | 2026-06-10 |
0.1.0 | High risk | 139 | 2026-06-10 |
0.4.0 | Review | 18 | 2026-06-04 |
0.3.1 | Review | 18 | 2026-06-03 |
Block this in CI
pkgradar gate --ecosystem npm @namncqualgo/[email protected]