PkgRadar

npm · registry.npmjs.org

custody-cli

Remote Dependency Spec: dependencies.blessed="github:mixmaxhq/blessed#dc5d6b916bc1eb8183ec7b4c053c0622aabd8e52"

Why PkgRadar flagged 0.5.0

SeveritySignalEvidence
mediumRemote Dependency Specdependencies.blessed="github:mixmaxhq/blessed#dc5d6b916bc1eb8183ec7b4c053c0622aabd8e52" · package.json
mediumRemote Dependency Specdependencies.tail="git+https://github.com/mixmaxhq/node-tail.git#4fadabf" · package.json

Scanned versions

VersionVerdictScoreScanned (UTC)
0.5.0Review162026-06-01
0.6.0Review162026-06-01

Block this in CI

PkgRadar gates custody-cli (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm [email protected]