PkgRadar

npm · registry.npmjs.org

ember-native

Remote Dependency Spec: dependencies.rollup-plugin-astroturf="https://codeload.github.com/patricklx/rollup-plugin-astroturf/tar.gz/5354c7a"

Why PkgRadar flagged 3.0.1

SeveritySignalEvidence
highRemote Dependency Specdependencies.rollup-plugin-astroturf="https://codeload.github.com/patricklx/rollup-plugin-astroturf/tar.gz/5354c7a" · package.json

Scanned versions

VersionVerdictScoreScanned (UTC)
3.0.1High risk82026-06-12
3.0.2High risk82026-06-12
3.1.0Review32026-06-12
3.2.0Review32026-06-12

Block this in CI

PkgRadar gates ember-native (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm [email protected]