PkgRadar

npm · registry.npmjs.org

@sentio/sdk

Remote Payload: matched "raw.githubusercontent.com"

Why PkgRadar flagged 4.0.0-rc.3

SeveritySignalEvidence
mediumRemote Payloadmatched "raw.githubusercontent.com" · package/lib/iota/ext/coin.js
mediumRemote Payloadmatched "raw.githubusercontent.com" · package/lib/sui/ext/coin.js
mediumRemote Payloadmatched "raw.githubusercontent.com" · package/lib/aptos/ext/token.js
mediumRemote Payloadmatched "raw.githubusercontent.com" · package/src/iota/ext/coin.ts
mediumRemote Payloadmatched "raw.githubusercontent.com" · package/src/sui/ext/coin.ts
mediumRemote Payloadmatched "raw.githubusercontent.com" · package/src/aptos/ext/token.ts

Scanned versions

VersionVerdictScoreScanned (UTC)
4.0.0-rc.3Review152026-06-11
1.13.0Review22026-06-10
1.12.6Review22026-06-10
1.13.1Review22026-06-10
4.0.0-rc.2Review152026-06-10
2.63.1Review152026-06-05
3.8.1Review152026-06-05
3.8.1-rc3.1Review152026-06-04
2.63.1-rc2.1Review152026-06-04
3.8.0Review152026-06-03
2.63.0Review152026-06-03
3.8.0-rc3.4Review152026-06-03
2.63.0-rc2.3Review152026-06-03
2.63.0-rc2.1Review152026-06-02
2.63.0-rc2.2Review152026-06-02
3.8.0-rc3.3Review152026-06-02
3.8.0-rc3.2Review152026-06-02
3.8.0-rc3.1Review152026-06-02
4.0.0-rc.1Review152026-06-02
3.9.0-rc.14Review152026-06-01
3.9.0-rc.13Review152026-05-30
3.9.0-rc.12Review152026-05-29
3.9.0-rc.11Review152026-05-29
3.9.0-rc.10Review152026-05-29
3.9.0-rc.8Review152026-05-28
3.9.0-rc.9Review152026-05-28
3.9.0-rc.6Review152026-05-28
3.9.0-rc.7Review152026-05-28

Block this in CI

PkgRadar gates @sentio/sdk (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @sentio/[email protected]