PkgRadar

npm · registry.npmjs.org

jailbreak-code

New Account With Lifecycle Hook: package first published 0 day(s) ago, 6 total version(s), has lifecycle hook

Why PkgRadar flagged 2.0.1

SeveritySignalEvidence
highNew Lifecycle Script Vs Previouspostinstall added in 2.0.1 vs 1.0.6: "node ./postinstall.cjs" · package.json
mediumNew Account With Lifecycle Hookpackage first published 0 day(s) ago, 6 total version(s), has lifecycle hook · package.json

Scanned versions

VersionVerdictScoreScanned (UTC)
2.0.8Review152026-06-11
2.0.9Review152026-06-11
2.0.7Review152026-06-11
2.0.6Review152026-06-11
2.0.5Review152026-06-11
2.0.4Low risk02026-06-11
2.0.2Low risk02026-06-11
2.0.1High risk452026-06-11
2.0.0High risk452026-06-11
1.0.6High risk402026-06-11
1.0.5High risk402026-06-11
1.0.4High risk402026-06-11
1.0.3High risk402026-06-11
1.0.2High risk402026-06-11
1.0.1High risk402026-06-11
1.0.0High risk452026-06-11

Related campaigns

Block this in CI

PkgRadar gates jailbreak-code (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm [email protected]