PkgRadar

npm · registry.npmjs.org

bfx-api-node-models

Remote Dependency Spec: dependencies.bfx-hf-util="git+https://github.com/bitfinexcom/bfx-hf-util.git#v1.0.12"

Why PkgRadar flagged 2.1.0

SeveritySignalEvidence
mediumRemote Dependency Specdependencies.bfx-hf-util="git+https://github.com/bitfinexcom/bfx-hf-util.git#v1.0.12" · package.json

Scanned versions

VersionVerdictScoreScanned (UTC)
2.1.0Review62026-06-03
2.1.1Review62026-06-03

Block this in CI

PkgRadar gates bfx-api-node-models (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm [email protected]