PkgRadar

npm · registry.npmjs.org

etcher-sdk

Remote Dependency Spec: dependencies.unbzip2-stream="github:balena-io-modules/unbzip2-stream#4a54f56a25b58950f9e4277c56db2912d62242e7"

Why PkgRadar flagged 10.2.6-build-more-pipeline-cd77a1113bfdce7d4a3c1b64fa61450c2187b550-1

SeveritySignalEvidence
mediumRemote Dependency Specdependencies.unbzip2-stream="github:balena-io-modules/unbzip2-stream#4a54f56a25b58950f9e4277c56db2912d62242e7" · package.json

Scanned versions

VersionVerdictScoreScanned (UTC)
10.2.6-build-more-pipeline-cd77a1113bfdce7d4a3c1b64fa61450c2187b550-1Review32026-06-11
10.2.5Review32026-06-11
10.2.5-build-simplify-02d427075f343eaaca0383c7296228d08cae1549-1Review32026-06-11
10.2.5-build-more-pipeline-76e80d5a53d03d858872497e8d5a8c3924d6698d-1Review32026-06-11
10.2.4Review32026-06-11
10.2.4-build-native-combined-steam-42530433eab7d7b03f1fb3b761c1a0acfcdb6a0f-1Review32026-06-11
10.2.4-build-dummy-buffer-e1c9b1e4007e362fedb771909106e8ec218419d2-3Review32026-06-10
10.2.3Review32026-06-10
10.2.4-build-more-pipeline-5ba0d7bc332ce3a2ca97614427ffe104bff70c37-1Review32026-06-10
10.2.3-build-pipeline-a9e69f7961e8aff93f46f1590045b7d6a7eafb71-1Review32026-06-10
10.2.3-build-more-pipeline-828291370bfca8cecfc6e8a0fb9151d6648d8e50-1Review32026-06-10
10.2.2Review32026-06-08
10.2.2-build-file-perms-619abfc13f5243d3ba07978a6a217bd7434e2b75-1Review32026-06-08
10.2.1Review32026-06-05
10.2.1-build-fix-cleanup-b35532ae8627d38ef67dbb137c6fad601abf94ef-1Review32026-06-04
10.2.1-build-pipeline-705cd9534814d1e997729952669f531ab51ad2bd-2Review32026-06-04
10.2.1-build-native-combined-steam-eb8bf44abe04dd349f298532a56f8068d3b53d78-1Review32026-06-04
10.2.0Review32026-06-04
10.2.0-build-compress-commons-f3014b7f00f0c4d59d6c4c4bde413c0f838b0c47-1Review32026-06-03
10.2.0-build-compress-commons-d1d39fdae1fe0680acc0809b0ca0b5bdfb1a343f-1Review32026-06-03
10.2.0-build-compress-commons-be98985ef1e675b456428855d31b3faea5b45bae-1Review32026-06-03
10.2.0-build-compress-commons-dd5e427579ce42461a2648b2d5fd3b2804f6c97c-1Review32026-06-03
10.2.0-build-compress-commons-bfec1d33ce1f0143c5e9fce9fb594fa97b96466b-1Review32026-06-02
10.2.0-build-compress-commons-ae204d65b6a724cb4021270fbc74ebf57387d446-1Review32026-06-02
10.2.0-build-compress-commons-878b43b5c22384890b91edc564db6272263a4435-1Review32026-06-02
10.2.0-build-compress-commons-a23e324001608625a735c64e8c64db3af0f0a79c-2Review32026-05-31
10.2.0-build-compress-commons-9ba7e70e93aaff11e5c3b0ef3c221f49abe9402f-2Review32026-05-30
10.2.0-build-compress-commons-b8daf76ec2f842aead474d8a4f4742af8a679ba2-1Review32026-05-30
10.2.0-build-compress-commons-bd51d5854961a7f506eef6f8e42626fe31bb8b62-1Review32026-05-30
10.2.0-build-compress-commons-8473bb3d80a7a7135299b9263a2299bce3aceab9-1Review32026-05-30
10.2.0-build-compress-commons-12a178fd2026e60e1c7b92c2bd9d3db9584c0846-2Review32026-05-29
10.2.0-build-compress-commons-f774c463ac51ad793a5a406cf1759aecd241c6ed-1Review32026-05-29
10.2.0-build-compress-commons-bd678f0c821091550169705da766274357414bb7-1Review32026-05-29
10.2.0-build-compress-commons-d0ea33591a8805df3b72d82352072ce6f16c3313-1Review32026-05-28
10.2.0-build-compress-commons-d6c2aa45e3df951bb04889a5f899ebfa98963992-2Review32026-05-28
10.2.0-build-compress-commons-d25958a763c48e4ddbd823d823669cdaa217a068-1Review32026-05-28
10.2.0-build-compress-commons-03f780f319c201a6ef5a03fe87523bd9d31a83d1-1Review32026-05-28
10.1.6-build-lint-tests-63470edd9c9d69b5dff40a7e46c4408ecc215594-1Review32026-05-27
10.1.6Review32026-05-27
10.2.0-build-zip64-35ef6bca61092816df944359181a904e9c2f997a-3Review32026-05-26
10.2.0-build-zip64-3a5ff4a68a745f7b4a0b989978e0007febd8784b-4Review32026-05-25
10.2.0-build-zip64-1b1bbb3a66d3bba8440c6e3300fb9a8fa2948708-1Review32026-05-25

Block this in CI

PkgRadar gates etcher-sdk (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm etcher-sdk@10.2.6-build-more-pipeline-cd77a1113bfdce7d4a3c1b64fa61450c2187b550-1