PkgRadar

npm · registry.npmjs.org

gemcap-be-common

Remote Dependency Spec: dependencies.xlsx="https://cdn.sheetjs.com/xlsx-0.20.3/xlsx-0.20.3.tgz"

Why PkgRadar flagged 1.5.88

SeveritySignalEvidence
highRemote Dependency Specdependencies.xlsx="https://cdn.sheetjs.com/xlsx-0.20.3/xlsx-0.20.3.tgz" · package.json

Scanned versions

VersionVerdictScoreScanned (UTC)
1.5.88High risk62026-06-12
1.5.87High risk62026-06-11
1.5.86High risk62026-06-10
1.5.85High risk62026-06-10
1.5.84High risk62026-06-10
1.5.83High risk62026-06-10
1.5.82High risk62026-06-10
1.5.81High risk62026-06-10
1.5.79High risk62026-06-10
1.5.80High risk62026-06-10
1.5.75High risk62026-06-10
1.5.74High risk62026-06-10
1.5.73High risk62026-06-10
1.5.71High risk62026-06-10
1.5.72High risk62026-06-10
1.5.70High risk62026-06-10
1.5.69High risk62026-06-10
1.5.68High risk62026-06-10
1.5.67High risk62026-06-10
1.5.66High risk62026-06-10
1.5.65Review62026-05-29
1.5.64Review62026-05-27
1.5.63Review62026-05-27
1.5.61Review62026-05-26
1.5.62Review62026-05-26
1.5.59Review62026-05-25
1.5.60Review62026-05-25
1.5.57Review62026-05-25
1.5.58Review62026-05-25

Block this in CI

PkgRadar gates gemcap-be-common (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm [email protected]