PkgRadar

npm · registry.npmjs.org

libp2p

Remote Dependency Spec: dependencies.libp2p-interop="github:libp2p/interop#master"

Why PkgRadar flagged 0.24.0-rc.1

SeveritySignalEvidence
mediumRemote Dependency Specdependencies.libp2p-interop="github:libp2p/interop#master" · package.json

Scanned versions

VersionVerdictScoreScanned (UTC)
0.24.0-rc.1Review32026-06-12
3.3.3-404c7824aLow risk02026-06-12
0.24.0-rc.2Review32026-06-12
0.24.4Low risk02026-06-12
3.3.3-7ae12f9b0Low risk02026-06-06
3.3.3-a34745c01Low risk02026-06-05
3.3.3Low risk02026-05-31
3.3.2-160a24585Low risk02026-05-30
3.3.2-5b8813abcLow risk02026-05-30
3.3.2-b7c6dc0f2Low risk02026-05-29
3.3.2-29797a5bbLow risk02026-05-29
3.3.1-d888f182fLow risk02026-05-27
3.3.2Low risk02026-05-27
3.3.1-ed1ad1f26Low risk02026-05-25
3.3.1-d59c165acLow risk02026-05-25
3.3.1-3574648c3Low risk02026-05-25

Block this in CI

PkgRadar gates libp2p (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm [email protected]