PkgRadar

npm · registry.npmjs.org

@pulumi/aws

Credential file access: matched ".aws"

Why PkgRadar flagged 7.31.0-alpha.1779436740

SeveritySignalEvidence
highCredential file accessmatched ".aws" · package/s3/accessPoint.js
highCredential file accessmatched ".aws" · package/macie2/account.js
highCredential file accessmatched ".aws" · package/organizations/account.js
highCredential file accessmatched ".aws" · package/iam/accountPasswordPolicy.js
highCredential file accessmatched ".aws" · package/s3/accountPublicAccessBlock.js
highCredential file accessmatched ".aws" · package/ecs/accountSettingDefault.js
highCredential file accessmatched ".aws" · package/quicksight/accountSettings.js
highCredential file accessmatched ".aws" · package/quicksight/accountSubscription.js
highCredential file accessmatched ".aws" · package/memorydb/acl.js
highCredential file accessmatched ".aws" · package/sfn/activity.js
highCredential file accessmatched ".aws" · package/eks/addon.js
highCredential file accessmatched ".aws" · package/bedrock/agentDataSource.js

Scanned versions

VersionVerdictScoreScanned (UTC)
7.33.0-alpha.1781077846Low risk02026-06-10
7.33.0-alpha.1780990142Low risk02026-06-09
7.33.0-alpha.1780729991Low risk02026-06-06
7.33.0-alpha.1780645471Low risk02026-06-05
7.33.0-alpha.1780558734Low risk02026-06-04
6.83.4Low risk02026-06-03
7.33.0-alpha.1780472821Low risk02026-06-03
7.33.0-alpha.1780317927Low risk02026-06-01
7.33.0-alpha.1780127692Low risk02026-05-30
7.32.0Low risk02026-05-29
7.32.0-alpha.1780075428Low risk02026-05-29
7.32.0-alpha.1780014499Low risk02026-05-29
7.32.0-alpha.1779953541Low risk02026-05-28
7.32.0-alpha.1779871574Low risk02026-05-27
7.31.0Low risk02026-05-26
7.31.0-alpha.1779782175Low risk02026-05-26
7.31.0-alpha.1779607499Low risk02026-05-25
7.31.0-alpha.1779696236Low risk02026-05-25
7.31.0-alpha.1779436740Review1122026-05-24

Related campaigns

Block this in CI

PkgRadar gates @pulumi/aws (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @pulumi/[email protected]