npm · registry.npmjs.org
@strada.sh/sdk
Remote Dependency Spec: devDependencies.better-auth="https://pkg.pr.new/better-auth@9489"
Why PkgRadar flagged 0.4.0
| Severity | Signal | Evidence |
|---|---|---|
| medium | Remote Dependency Spec | devDependencies.better-auth="https://pkg.pr.new/better-auth@9489" · package.json |
| medium | New Remote Dependency Vs Previous | devDependencies.better-auth added in 0.4.0 vs 0.3.0: "https://pkg.pr.new/better-auth@9489" · package.json |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
0.4.0 | High risk | 100 | 2026-06-10 |
0.5.0 | High risk | 92 | 2026-06-10 |
0.4.3 | High risk | 92 | 2026-06-10 |
0.4.1 | Review | 92 | 2026-05-29 |
0.4.2 | Review | 92 | 2026-05-29 |
0.3.0 | Low risk | 0 | 2026-05-27 |
Related campaigns
- 299a734d94fd0cd8697ed6cfad25e14df0d611a1ffc9e143db64ea6dc2354421 — 3 releases, max score 84
- https://pkg.pr.new/better-auth@9489 — 5 releases, max score 84
Block this in CI
pkgradar gate --ecosystem npm @strada.sh/[email protected]