npm · registry.npmjs.org
@skuba-lib/api
Credential file access: matched ".npmrc"
Why PkgRadar flagged 2.2.0-add-cdk-NodejsFunction-20260613141552
| Severity | Signal | Evidence |
|---|---|---|
| medium | Credential file access | matched ".npmrc" · package/lib/cdk/nodejsFunction/index.mjs |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
2.2.0-add-cdk-NodejsFunction-20260613141552 | Review | 4 | 2026-06-13 |
2.2.0-add-cdk-NodejsFunction-20260613135656 | Review | 4 | 2026-06-13 |
2.2.0-add-cdk-NodejsFunction-20260613134315 | Review | 4 | 2026-06-13 |
2.2.0-main-20260609014203 | Low risk | 0 | 2026-06-09 |
2.2.0-move-cdk-snapshot-normalisation-20260516083104 | Low risk | 0 | 2026-06-09 |
2.1.2-patch-import-order-20260513135055 | Low risk | 0 | 2026-06-09 |
2.1.2-renovate-execa-9.x-20260513091933 | Low risk | 0 | 2026-06-09 |
2.1.2 | Low risk | 0 | 2026-06-09 |
Block this in CI
pkgradar gate --ecosystem npm @skuba-lib/[email protected]