npm · registry.npmjs.org
local-repo-harness
Remote Payload: matched "raw.githubusercontent.com"
Why PkgRadar flagged 0.5.13
| Severity | Signal | Evidence |
|---|---|---|
| medium | Remote Payload | matched "raw.githubusercontent.com" · package/assets/templates/helpers/check-agent-tooling.sh |
| medium | Remote Payload | matched "curl " · package/assets/templates/helpers/check-context-files.sh |
| medium | Remote Payload | matched "curl " · package/install.sh |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
0.5.13 | Review | 41 | 2026-06-17 |
0.5.11 | Review | 28 | 2026-06-17 |
0.5.12 | Review | 28 | 2026-06-17 |
0.5.10 | Review | 41 | 2026-06-17 |
0.5.9 | Review | 41 | 2026-06-17 |
0.5.8 | Review | 41 | 2026-06-16 |
0.5.7 | Review | 41 | 2026-06-16 |
0.5.5 | Review | 41 | 2026-06-16 |
0.5.6 | Review | 41 | 2026-06-16 |
0.5.4 | Review | 41 | 2026-06-16 |
0.5.3 | Review | 41 | 2026-06-15 |
0.5.2 | Review | 51 | 2026-06-15 |
0.5.1 | Review | 51 | 2026-06-15 |
0.5.0 | Review | 51 | 2026-06-14 |
Block this in CI
pkgradar gate --ecosystem npm [email protected]