PkgRadar

npm · registry.npmjs.org

gatsby-theme-chronogrove

Remote Dependency Spec: dependencies.lottie-react-web="github:chrisvogt/lottie-react-web#codex/modernize-tooling-and-ci"

Why PkgRadar flagged 0.91.8

SeveritySignalEvidence
mediumRemote Dependency Specdependencies.lottie-react-web="github:chrisvogt/lottie-react-web#codex/modernize-tooling-and-ci" · package.json

Scanned versions

VersionVerdictScoreScanned (UTC)
0.91.8Review32026-05-31
0.91.9Review32026-05-31

Block this in CI

PkgRadar gates gatsby-theme-chronogrove (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm [email protected]
gatsby-theme-chronogrove — npm security scan | PkgRadar