PkgRadar

npm · registry.npmjs.org

@robhan-cdk-lib/aws_grafana

Credential file access: matched ".aws"

Why PkgRadar flagged 0.0.328

SeveritySignalEvidence
highCredential file accessmatched ".aws" · package/lib/workspace-base.js
highCredential file accessmatched ".aws" · package/package.json

Scanned versions

VersionVerdictScoreScanned (UTC)
0.0.346Low risk02026-06-12
0.0.345Low risk02026-06-11
0.0.344Low risk02026-06-10
0.0.343Low risk02026-06-09
0.0.342Low risk02026-06-08
0.0.341Low risk02026-06-07
0.0.340Low risk02026-06-06
0.0.339Low risk02026-06-05
0.0.338Low risk02026-06-04
0.0.337Low risk02026-06-03
0.0.336Low risk02026-06-02
0.0.335Low risk02026-06-01
0.0.334Low risk02026-05-31
0.0.333Low risk02026-05-30
0.0.332Low risk02026-05-29
0.0.331Low risk02026-05-28
0.0.330Low risk02026-05-27
0.0.329Low risk02026-05-26
0.0.328Review502026-05-25
0.0.327Review502026-05-24
0.0.326Review502026-05-24

Related campaigns

Block this in CI

PkgRadar gates @robhan-cdk-lib/aws_grafana (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @robhan-cdk-lib/[email protected]