PkgRadar

npm · registry.npmjs.org

@onitailabs/olava-cli

Native Binary Main Entry: main/bin entry points to a compiled binary: bin entry

Why PkgRadar flagged 0.10.0

SeveritySignalEvidence
highNative Binary Main Entrymain/bin entry points to a compiled binary: bin entry · package.json

Scanned versions

VersionVerdictScoreScanned (UTC)
0.10.0High risk352026-06-13
0.9.0High risk502026-06-12
0.8.2High risk502026-06-12
0.8.0High risk502026-06-12
0.8.1High risk502026-06-12
0.7.2High risk502026-06-11
0.7.1High risk502026-06-11
0.7.0High risk502026-06-11
0.6.4High risk502026-06-11
0.6.5High risk502026-06-11
0.6.3High risk502026-06-11
0.6.2High risk502026-06-11
0.6.1High risk502026-06-11
0.6.0High risk502026-06-11
0.5.3High risk502026-06-11
0.5.1High risk502026-06-10
0.5.2High risk502026-06-10
0.5.0-betaReview52026-06-08
0.4.2-betaReview52026-06-06
0.4.1-betaReview52026-06-03
0.4.0-betaReview52026-06-03
0.3.3-betaReview32026-06-02
0.3.2-betaReview32026-05-30
0.3.1-betaReview32026-05-30
0.3.0-betaReview52026-05-28
0.2.3-betaReview52026-05-27
0.2.2-betaReview52026-05-26
0.2.1-betaReview52026-05-26
0.2.0-beta.2Review52026-05-26
0.2.0-beta.1Review52026-05-26
0.1.0-beta.1Review52026-05-26
0.2.0-betaReview52026-05-26

Campaign attribution

Part of the @nolimit-x binary payload campaign.

Block this in CI

PkgRadar gates @onitailabs/olava-cli (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @onitailabs/[email protected]