PkgRadar

npm · registry.npmjs.org

3d-specimen-viewer

Remote Dependency Spec: dependencies.fetch-progress="github:GenieTim/fetch-progress"

Why PkgRadar flagged 2.0.7

SeveritySignalEvidence
mediumRemote Dependency Specdependencies.fetch-progress="github:GenieTim/fetch-progress" · package.json
mediumLarge Javascript Payload2187352 bytes · package/dist/esm/index-B36lnaqz.js
mediumLarge Javascript Payload2187640 bytes · package/dist/esm/index-BDk7ad9b.js
mediumLarge Javascript Payload2187429 bytes · package/dist/esm/index-BrAO29bZ.js
mediumLarge Javascript Payload2182243 bytes · package/dist/cjs/index-C1GM-nEV.js
mediumLarge Javascript Payload2191497 bytes · package/dist/cjs/index-Ck_0maSQ.js
mediumLarge Javascript Payload2191964 bytes · package/dist/cjs/index-CWrSc2o1.js
mediumLarge Javascript Payload2231976 bytes · package/dist/esm/index-CY-Jz384.js
mediumLarge Javascript Payload2187662 bytes · package/dist/esm/index-DDHVP54j.js
mediumLarge Javascript Payload2178053 bytes · package/dist/esm/index-DePa5IHM.js
mediumLarge Javascript Payload2191731 bytes · package/dist/cjs/index-DJ7e4U0J.js
mediumLarge Javascript Payload2191942 bytes · package/dist/cjs/index-DoeFTvzE.js

Scanned versions

VersionVerdictScoreScanned (UTC)
2.0.7Review842026-05-25

Block this in CI

PkgRadar gates 3d-specimen-viewer (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm [email protected]