PkgRadar

npm · registry.npmjs.org

meetsoma

Install Lifecycle Suppresses Failure: postinstall="bash scripts/install-gum.sh || true"

Why PkgRadar flagged 0.3.1

SeveritySignalEvidence
highInstall Lifecycle Suppresses Failurepostinstall="bash scripts/install-gum.sh || true" · package.json

Scanned versions

VersionVerdictScoreScanned (UTC)
0.3.1High risk302026-06-11
0.31.0Review52026-06-11
0.3.2High risk302026-06-11
0.28.1Review52026-06-01
0.28.0Review52026-05-30
0.27.6Review52026-05-30
0.27.4Review52026-05-30
0.27.5Review52026-05-30

Block this in CI

PkgRadar gates meetsoma (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm [email protected]