PkgRadar

npm · registry.npmjs.org

@steedos-widgets/sortable

Credential File Packaged: package/.env

Why PkgRadar flagged 6.10.54-beta.1

SeveritySignalEvidence
highCredential File Packagedpackage/.env · package/.env

Scanned versions

VersionVerdictScoreScanned (UTC)
6.10.54-beta.1High risk172026-06-13
6.10.53-beta.26High risk172026-06-10
6.10.53High risk172026-06-10
6.10.54-beta.6High risk172026-06-10
6.10.54-beta.5High risk172026-06-10
6.10.54-beta.4High risk172026-06-10
6.10.54-beta.3High risk172026-06-10
6.10.54-beta.2High risk172026-06-10

Block this in CI

PkgRadar gates @steedos-widgets/sortable (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @steedos-widgets/[email protected]