PkgRadar

npm · registry.npmjs.org

@zkp2p/circuits-circom

Remote Dependency Spec: dependencies.snarkjs="git+https://github.com/vb7401/snarkjs.git#24981febe8826b6ab76ae4d76cf7f9142919d2b8"

Why PkgRadar flagged 0.1.3-rc5

SeveritySignalEvidence
mediumRemote Dependency Specdependencies.snarkjs="git+https://github.com/vb7401/snarkjs.git#24981febe8826b6ab76ae4d76cf7f9142919d2b8" · package.json

Scanned versions

VersionVerdictScoreScanned (UTC)
0.1.3-rc5Review62026-06-05
0.1.3-rc6Review62026-06-05

Block this in CI

PkgRadar gates @zkp2p/circuits-circom (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm @zkp2p/[email protected]