PkgRadar

npm · registry.npmjs.org

duclaw-cli

Known Indicator Filename: package/dist/bundle.js

Why PkgRadar flagged 1.8.10

SeveritySignalEvidence
highKnown Indicator Filenamepackage/dist/bundle.js · package/dist/bundle.js

Scanned versions

VersionVerdictScoreScanned (UTC)
1.9.1Low risk02026-06-03
1.8.48Low risk02026-06-02
1.8.47Low risk02026-06-02
1.8.45Low risk02026-06-01
1.8.46Low risk02026-06-01
1.8.44Low risk02026-06-01
1.8.43Low risk02026-06-01
1.8.42Low risk02026-06-01
1.8.41Low risk02026-06-01
1.8.30Low risk02026-05-30
1.8.29Low risk02026-05-30
1.8.20Low risk02026-05-30
1.8.21Low risk02026-05-30
1.8.17Low risk02026-05-30
1.8.16Low risk02026-05-30
1.8.15Low risk02026-05-30
1.8.14Low risk02026-05-30
1.8.13Low risk02026-05-30
1.8.12Low risk02026-05-30
1.8.39Low risk02026-05-29
1.8.40Low risk02026-05-29
1.8.34Low risk02026-05-29
1.8.33Low risk02026-05-29
1.8.31Low risk02026-05-28
1.8.32Low risk02026-05-28
1.8.10Review452026-05-25
1.8.9Review452026-05-25
1.8.8Review452026-05-25
1.8.7Review452026-05-25
1.8.6Review452026-05-24
1.8.5Review452026-05-24
1.8.4Review452026-05-24
1.8.3Review452026-05-24
1.8.1Review452026-05-24
1.8.2Review452026-05-24

Block this in CI

PkgRadar gates duclaw-cli (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm [email protected]