npm · registry.npmjs.org
artemis-code
Remote Payload: matched "raw.githubusercontent.com"
Why PkgRadar flagged 0.2.75
| Severity | Signal | Evidence |
|---|---|---|
| medium | Remote Payload | matched "raw.githubusercontent.com" · package/dist/odin/store.js |
| medium | Remote Payload | matched "curl " · package/skills/cco-huggingface-skills-huggingface-tool-builder/references/baseline_hf_api.sh |
| medium | Remote Payload | matched "curl " · package/skills/cco-huggingface-skills-huggingface-tool-builder/references/hf_enrich_models.sh |
| medium | Remote Payload | matched "curl " · package/skills/cco-huggingface-skills-huggingface-tool-builder/references/hf_model_papers_auth.sh |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
0.2.75 | Review | 59 | 2026-06-02 |
0.2.74 | Review | 59 | 2026-06-02 |
0.2.73 | Review | 59 | 2026-05-31 |
0.2.71 | Review | 243 | 2026-05-24 |
0.2.72 | Review | 243 | 2026-05-24 |
Block this in CI
pkgradar gate --ecosystem npm [email protected]