PkgRadar

npm · registry.npmjs.org

dealpos

Obfuscation Density: high encoded/escaped-token density

Why PkgRadar flagged 26.20.3

SeveritySignalEvidence
mediumObfuscation Densityhigh encoded/escaped-token density · package/browser/chunk-NVRMZQQR.js
mediumObfuscation Densityhigh encoded/escaped-token density · package/browser/chunk-Q7OVBNEW.js

Scanned versions

VersionVerdictScoreScanned (UTC)
26.23.3Low risk02026-06-17
26.22.9Low risk02026-06-17
26.23.2Low risk02026-06-17
26.23.1Low risk02026-06-12
26.22.5Low risk02026-06-12
26.22.4Low risk02026-06-11
26.23.0Low risk02026-06-10
9.9.8Low risk02026-06-10
26.22.3Low risk02026-06-10
26.22.2Low risk02026-06-09
26.21.9Low risk02026-06-08
26.22.1Low risk02026-06-08
26.22.0Low risk02026-06-06
26.21.6Low risk02026-06-05
26.21.5Low risk02026-06-05
26.21.4Low risk02026-06-04
26.21.98Low risk02026-06-04
26.21.99Low risk02026-06-04
26.21.3Low risk02026-06-03
26.21.1Low risk02026-06-02
26.21.2Low risk02026-06-02
26.20.9Low risk02026-05-31
26.20.3Review72026-05-28
26.20.4Review72026-05-28
26.19.9Review72026-05-28
26.20.2Review82026-05-27
26.20.1Review142026-05-25
26.21.0Review142026-05-25

Block this in CI

PkgRadar gates dealpos (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm [email protected]