PkgRadar

npm · registry.npmjs.org

base-viewer

Remote Dependency Spec: dependencies.base-query="git+ssh://[email protected]/archilogic-com/base-query.git#renderer-link"

Why PkgRadar flagged 0.0.1-a

SeveritySignalEvidence
mediumRemote Dependency Specdependencies.base-query="git+ssh://[email protected]/archilogic-com/base-query.git#renderer-link" · package.json
mediumLarge Javascript Payload2711345 bytes · package/components/webgl-renderer/three.min.js

Scanned versions

VersionVerdictScoreScanned (UTC)
0.0.1-aReview222026-05-26

Block this in CI

PkgRadar gates base-viewer (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm [email protected]