PkgRadar

npm · registry.npmjs.org

@templmf/temp-solf-lmf

Webhook Exfil Endpoint: matched "ngrok.app"

Why PkgRadar flagged 0.0.132

SeveritySignalEvidence
highWebhook Exfil Endpointmatched "ngrok.app" · package/golang.org/x/[email protected]/publicsuffix/table_test.go
mediumRemote Payloadmatched "raw.githubusercontent.com" · package/golang.org/x/[email protected]/encoding/charmap/maketables.go
mediumRemote Payloadmatched "curl " · package/golang.org/x/[email protected]/acme/rfc8555_test.go
mediumRemote Payloadmatched "wget " · package/golang.org/x/[email protected]/unix/ztypes_netbsd_386.go
mediumRemote Payloadmatched "wget " · package/golang.org/x/[email protected]/unix/ztypes_netbsd_amd64.go
mediumRemote Payloadmatched "wget " · package/golang.org/x/[email protected]/unix/ztypes_netbsd_arm.go
mediumRemote Payloadmatched "wget " · package/golang.org/x/[email protected]/unix/ztypes_netbsd_arm64.go
mediumRemote Payloadmatched "wget " · package/golang.org/x/[email protected]/unix/ztypes_openbsd_386.go
mediumRemote Payloadmatched "wget " · package/golang.org/x/[email protected]/unix/ztypes_openbsd_amd64.go
mediumRemote Payloadmatched "wget " · package/golang.org/x/[email protected]/unix/ztypes_openbsd_arm.go
mediumRemote Payloadmatched "wget " · package/golang.org/x/[email protected]/unix/ztypes_openbsd_arm64.go
mediumRemote Payloadmatched "wget " · package/golang.org/x/[email protected]/unix/ztypes_openbsd_mips64.go

Scanned versions

VersionVerdictScoreScanned (UTC)
0.0.132High risk862026-06-09
0.0.131Low risk02026-06-09
0.0.129Review672026-06-09
0.0.128Low risk02026-06-09
0.0.127Low risk02026-06-09
0.0.126Low risk02026-06-09
0.0.125Low risk02026-06-08
0.0.124Low risk02026-06-05
0.0.123Low risk02026-06-05
0.0.121Low risk02026-06-04
0.0.122Low risk02026-06-04
0.0.117Low risk02026-06-04
0.0.118Low risk02026-06-04
0.0.116Low risk02026-06-03
0.0.114Low risk02026-05-29
0.0.113Low risk02026-05-28
0.0.112Low risk02026-05-28
0.0.111Low risk02026-05-27
0.0.110Low risk02026-05-27
0.0.109Low risk02026-05-26
0.0.108Low risk02026-05-25
0.0.107Low risk02026-05-25
0.0.105Low risk02026-05-25
0.0.106Low risk02026-05-25

Block this in CI

PkgRadar gates @templmf/temp-solf-lmf (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @templmf/[email protected]