PkgRadar

npm · registry.npmjs.org

iobroker.bosch-smart-home-camera

Install Lifecycle Remote Or Exec: postinstall="node -e \"const v=parseInt(process.version.slice(1));if(v>=26){try{const fs=require('fs'),p='node_modules/c8/node_modules/yargs/package.json';const pkg=JSON.parse(fs.readFileSync(p,'utf8'));if(pkg.type==='module'){delete pkg.type;fs.writeFileSync(p,JSON.stringify(pkg,null,2));console.log('postinstall: patched c8 yargs for Node v26+ CJS compat');}}catch(e){/* c8 not installed yet */}}\""

Why PkgRadar flagged 1.2.0

SeveritySignalEvidence
highInstall Lifecycle Remote Or Execpostinstall="node -e \"const v=parseInt(process.version.slice(1));if(v>=26){try{const fs=require('fs'),p='node_modules/c8/node_modules/yargs/package.json';const pkg=JSON.parse(fs.readFileSync(p,'utf8'));if(pkg.type==='module'){delete pkg.type;fs.writeFileSync(p,JSON.stringify(pkg,null,2));console.log('postinstall: patched c8 yargs for Node v26+ CJS compat');}}catch(e){/* c8 not installed yet */}}\"" · package.json

Scanned versions

VersionVerdictScoreScanned (UTC)
1.5.4Low risk02026-06-13
1.5.3Low risk02026-06-12
1.5.2Low risk02026-06-11
1.5.1Low risk02026-06-11
1.5.0Low risk02026-06-10
1.4.1Low risk02026-06-10
1.4.0Low risk02026-06-10
1.3.0Low risk02026-06-08
1.2.7Low risk02026-06-07
1.2.6Low risk02026-06-07
1.2.5Low risk02026-06-04
1.2.4Low risk02026-06-04
1.2.3Low risk02026-06-04
1.2.2Low risk02026-06-04
1.2.1Low risk02026-06-04
1.2.0Review102026-06-03
1.1.0Review102026-06-02
1.0.5Review102026-06-01
1.0.4Review102026-05-31
1.0.3Review102026-05-29
1.0.2Review102026-05-29
1.0.1Review102026-05-29
1.0.0Review102026-05-28
0.8.0Review102026-05-25
0.7.15Review352026-05-24
0.7.14Review352026-05-24
0.7.13Review352026-05-24
0.7.12Review352026-05-24

Block this in CI

PkgRadar gates iobroker.bosch-smart-home-camera (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm [email protected]