PkgRadar

npm · registry.npmjs.org

@the-bearded-bear/claude-craft

Remote Payload: matched "curl "

Why PkgRadar flagged 8.13.0

SeveritySignalEvidence
mediumRemote Payloadmatched "curl " · package/Tools/i18n/rtk/de.sh
mediumRemote Payloadmatched "curl " · package/Tools/i18n/rtk/en.sh
mediumRemote Payloadmatched "curl " · package/Tools/i18n/rtk/es.sh
mediumRemote Payloadmatched "curl " · package/Tools/i18n/rtk/fr.sh
mediumRemote Payloadmatched "curl " · package/Tools/i18n/rtk/pt.sh

Scanned versions

VersionVerdictScoreScanned (UTC)
8.13.0Review152026-06-12
8.13.0-next.31f2270Review152026-06-12
8.12.0-next.60234c3Review152026-06-12
8.12.0-next.0bc6820Review152026-06-12
8.12.0-next.ea6697cReview152026-06-12
8.12.0Review152026-06-12
8.12.0-next.a42fa66Review152026-06-12
8.12.0-next.d70c2baReview152026-06-12
8.11.0Review152026-06-11
8.11.0-next.3205998Review152026-06-11
8.10.2Review152026-06-11
8.10.2-next.de83a58Review152026-06-11
8.10.1Review152026-06-11
8.10.1-next.b1c0608Review152026-06-11
8.10.0-next.7798036Review152026-06-10
8.10.0Review152026-06-09
8.10.0-next.b38faf1Review152026-06-09
8.10.0-next.d6b59c1Review152026-06-09
8.9.0-next.562e378Review152026-06-09
8.9.0-next.2c1b25fReview152026-06-09
8.9.0-next.c78ebb4Review152026-06-04
8.9.0-next.c4643f6Review152026-06-04
8.9.0-next.58e1400Review152026-06-02
8.9.0Review152026-06-02
8.8.1-next.87ef533Review152026-06-02
8.8.1Review152026-06-02
8.8.0Review152026-06-02
8.8.0-next.863f100Review152026-06-02
8.7.1-next.09556baReview152026-06-01
8.7.1-next.cd47b2dReview152026-05-29
8.7.1-next.e2169d9Review152026-05-29

Block this in CI

PkgRadar gates @the-bearded-bear/claude-craft (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @the-bearded-bear/[email protected]