PkgRadar

npm · registry.npmjs.org

autotel-devtools

Native Addon Gyp Action, Large Javascript Payload

Why PkgRadar flagged 6.1.2

SeveritySignalEvidence
highNative Addon Gyp Actionpackage/binding.gyp

Showing signal labels only. Sign in to view the exact matched indicators for each finding.

Scanned versions

VersionVerdictScoreScanned (UTC)
12.0.2Low risk02026-06-22
6.1.2High risk102026-06-22
5.1.1High risk102026-06-22
12.0.1Low risk02026-06-20
12.0.0Low risk02026-06-20
11.0.0Low risk02026-06-20
10.1.0Low risk02026-06-20
10.0.0Low risk02026-06-16
9.0.0Low risk02026-06-15
8.1.1Low risk02026-06-14
8.1.0Low risk02026-06-14
8.0.0Low risk02026-06-12
7.0.0Low risk02026-06-12
6.2.1Low risk02026-06-06
6.2.0Low risk02026-06-05
6.1.1Low risk02026-06-03
6.1.0Low risk02026-06-02
6.0.1Low risk02026-06-01
6.0.0Low risk02026-05-31
5.0.1Low risk02026-05-29
5.1.0Low risk02026-05-29
5.0.0Low risk02026-05-28
3.0.1Low risk02026-05-24
4.0.0Low risk02026-05-24

Campaign attribution

Part of the Miasma worm campaign.

Block this in CI

PkgRadar gates autotel-devtools (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm [email protected]