PkgRadar

npm · registry.npmjs.org

@nitro-web/webpack

Remote Dependency Spec: dependencies.clean-terminal-webpack-plugin="https://github.com/boycce/clean-terminal-webpack-plugin.git"

Why PkgRadar flagged 0.2.7

SeveritySignalEvidence
highRemote Dependency Specdependencies.clean-terminal-webpack-plugin="https://github.com/boycce/clean-terminal-webpack-plugin.git" · package.json

Scanned versions

VersionVerdictScoreScanned (UTC)
0.2.7High risk62026-06-17
0.2.6High risk62026-06-15
0.2.5High risk62026-06-15
0.2.4High risk62026-06-10
0.2.1High risk62026-06-10
0.2.3High risk62026-06-10
0.2.2High risk62026-06-10

Block this in CI

PkgRadar gates @nitro-web/webpack (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @nitro-web/[email protected]