PkgRadar

npm · registry.npmjs.org

@ygncode/pi-web

Obfuscation Density: high encoded/escaped-token density

Why PkgRadar flagged 0.0.1-beta.22

SeveritySignalEvidence
mediumObfuscation Densityhigh encoded/escaped-token density · package/web/package-lock.json

Scanned versions

VersionVerdictScoreScanned (UTC)
0.0.1-beta.32Low risk02026-06-16
0.0.1-beta.31Low risk02026-06-15
0.0.1-beta.30Low risk02026-06-06
0.0.1-beta.28Low risk02026-06-03
0.0.1-beta.29Low risk02026-06-03
0.0.1-beta.25Low risk02026-06-03
0.0.1-beta.24Low risk02026-05-30
0.0.1-beta.23Low risk02026-05-29
0.0.1-beta.22Review82026-05-28
0.0.1-beta.21Review82026-05-26
0.0.1-beta.19Review542026-05-24
0.0.1-beta.20Review542026-05-24

Block this in CI

PkgRadar gates @ygncode/pi-web (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @ygncode/[email protected]