PkgRadar

npm · registry.npmjs.org

addio-admin-sdk

Credential File Packaged: package/.env

Why PkgRadar flagged 1.7.179

SeveritySignalEvidence
highCredential File Packagedpackage/.env · package/.env

Scanned versions

VersionVerdictScoreScanned (UTC)
1.7.179High risk172026-06-16
1.7.178High risk172026-06-16
1.7.161High risk172026-06-13
1.7.177High risk172026-06-12
1.7.176-canary-2High risk172026-06-12
1.7.176-canary-1High risk172026-06-12
1.7.176High risk172026-06-12
1.7.175High risk172026-06-12
1.7.174High risk172026-06-12
1.7.173High risk172026-06-12
1.7.172High risk172026-06-11
1.7.171Low risk02026-06-11
1.7.170-canary-1High risk172026-06-10
1.7.169-canary-1High risk172026-06-10
1.7.159High risk172026-06-10
1.7.157High risk172026-06-10
1.7.156High risk172026-06-10
1.7.170High risk172026-06-10
1.7.169High risk172026-06-10
1.7.168High risk172026-06-10
1.7.166High risk172026-06-10
1.7.165High risk172026-06-10
1.7.164High risk172026-06-10
1.7.163High risk172026-06-10
1.7.162-canary-2High risk172026-06-10
1.7.162-canary-1High risk172026-06-10
1.7.153-canary-1High risk172026-06-10
1.7.155High risk172026-06-10
1.7.167Low risk02026-06-09
1.7.162Low risk02026-05-30
1.7.160Low risk02026-05-29
1.7.158Low risk02026-05-28

Block this in CI

PkgRadar gates addio-admin-sdk (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm [email protected]