npm · registry.npmjs.org
@openzeppelin/hardhat-upgrades
Remote Dependency Spec: devDependencies.forge-std="github:foundry-rs/forge-std#v1.16.1"
Why PkgRadar flagged 4.0.2
| Severity | Signal | Evidence |
|---|---|---|
| medium | Remote Dependency Spec | devDependencies.forge-std="github:foundry-rs/forge-std#v1.16.1" · package.json |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
4.0.2 | Review | 2 | 2026-06-10 |
4.0.1 | Review | 16 | 2026-06-03 |
4.0.0-alpha.0 | Review | 16 | 2026-06-03 |
4.0.0 | Review | 2 | 2026-06-01 |
Block this in CI
pkgradar gate --ecosystem npm @openzeppelin/[email protected]