PkgRadar

npm · registry.npmjs.org

casualos

Large Javascript Payload: 9893952 bytes

Why PkgRadar flagged 4.2.4

SeveritySignalEvidence
mediumLarge Javascript Payload9893952 bytes · package/dist/cli.js

Scanned versions

VersionVerdictScoreScanned (UTC)
4.2.6-alpha.27441561603Low risk02026-06-12
4.2.5Low risk02026-06-10
4.2.4-alpha.25937693392Low risk02026-06-09
4.2.5-alpha.27225827262Low risk02026-06-09
4.2.4Review32026-05-28
4.2.5-alpha.26538318498Review32026-05-28

Block this in CI

PkgRadar gates casualos (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm [email protected]