PkgRadar

npm · registry.npmjs.org

@rzl-zone/utils-js

Credential file access: matched ".npmrc"

Why PkgRadar flagged 3.14.0-beta.0

SeveritySignalEvidence
highCredential file accessmatched ".npmrc" · package/dist/parsers-i8WEeMJl.cjs
highCredential file accessmatched ".npmrc" · package/dist/parsers-BBAE_xVM.js
highCredential file accessmatched ".SSH" · package/dist/rzl-utils.global.js

Scanned versions

VersionVerdictScoreScanned (UTC)
3.14.0-beta.0Review802026-05-24
3.14.0Review802026-05-24

Related campaigns

Block this in CI

PkgRadar gates @rzl-zone/utils-js (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @rzl-zone/[email protected]