PkgRadar

npm · registry.npmjs.org

cabloy

Credential File Packaged: package/vona/env/.env

Why PkgRadar flagged 5.1.61

SeveritySignalEvidence
highCredential File Packagedpackage/vona/env/.env · package/vona/env/.env
highCredential File Packagedpackage/zova/env/.env · package/zova/env/.env

Scanned versions

VersionVerdictScoreScanned (UTC)
5.1.61Review222026-06-17
5.1.9Low risk02026-06-16
5.1.8Low risk02026-06-16
5.1.60Review222026-06-16
5.1.6Low risk02026-06-16
5.1.59Review222026-06-13
5.1.58Review222026-06-13
5.1.57Review222026-06-13
5.1.56Review222026-06-12
5.1.55Review222026-06-12
5.1.54Review222026-06-12
5.1.53Review222026-06-11
5.1.52Review222026-06-10
5.1.51Review222026-06-07
5.1.50Review222026-06-04
5.1.49Review222026-06-04
5.1.48Review222026-06-03
5.1.47Review222026-06-03
5.1.46Review222026-06-03
5.1.45Review222026-06-03
5.1.43Review222026-06-02
5.1.44Review222026-06-02
5.1.41Review222026-06-01
5.1.40Review222026-06-01
5.1.39Review222026-06-01
5.1.38Review222026-06-01
5.1.37Review222026-05-31
5.1.36Review222026-05-31
5.1.35Review222026-05-31
5.1.33Review372026-05-31
5.1.32Review372026-05-31
5.1.31Review372026-05-31
5.1.30Review372026-05-31
5.1.28Review372026-05-31
5.1.29Review372026-05-31
5.1.27Review372026-05-31
5.1.22Review372026-05-30
5.1.21Review372026-05-30
5.1.20Review372026-05-30
5.1.19Review372026-05-30
5.1.15Review372026-05-29
5.1.16Review372026-05-29
5.1.13Review372026-05-29
5.1.11Review372026-05-29
5.1.12Review372026-05-29
5.1.10Review372026-05-28

Block this in CI

PkgRadar gates cabloy (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm [email protected]