PkgRadar

npm · registry.npmjs.org

@sqlite-node/createsql

Js Obfuscator Packer

Why PkgRadar flagged 1.1.0

SeveritySignalEvidence
highJs Obfuscator Packerpackage/index.js

Showing signal labels only. Sign in to view the exact matched indicators for each finding.

Scanned versions

VersionVerdictScoreScanned (UTC)
1.1.0High risk312026-06-22
1.1.1High risk452026-06-22
1.1.5High risk02026-06-22
1.1.4High risk02026-06-22
1.0.4High risk02026-06-22
1.0.9High risk02026-06-22
1.1.3Low risk02026-06-12
1.1.2Low risk02026-06-12
1.0.8Low risk02026-06-12
1.0.7Low risk02026-06-12
1.0.6Low risk02026-06-12
1.0.5Low risk02026-06-11
1.0.3Low risk02026-06-09
1.0.2Low risk02026-06-09
1.0.1Low risk02026-06-03

Block this in CI

PkgRadar gates @sqlite-node/createsql (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @sqlite-node/[email protected]
@sqlite-node/createsql — npm malware advisory | PkgRadar