PkgRadar

npm · registry.npmjs.org

@xiee/utils

Remote Payload: matched "curl "

Why PkgRadar flagged 1.14.54

SeveritySignalEvidence
mediumRemote Payloadmatched "curl " · package/purge.sh

Scanned versions

VersionVerdictScoreScanned (UTC)
1.14.54Review32026-06-10
1.14.53Review32026-06-09
1.14.52Review32026-06-08
1.14.51Review32026-06-06
1.14.50Review32026-06-05
1.14.48Review32026-06-04
1.14.49Review32026-06-04
1.14.47Review32026-06-03
1.14.46Review32026-06-02
1.14.44Review32026-05-29
1.14.45Review32026-05-29

Block this in CI

PkgRadar gates @xiee/utils (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @xiee/[email protected]