PkgRadar

npm · registry.npmjs.org

miolo

Credential File Packaged: package/src/config/.env

Why PkgRadar flagged 3.0.0-beta.207

SeveritySignalEvidence
highCredential File Packagedpackage/src/config/.env · package/src/config/.env
highCredential File Packagedpackage/template/.env · package/template/.env

Scanned versions

VersionVerdictScoreScanned (UTC)
3.0.0-beta.207High risk372026-06-10
3.0.0-beta.206High risk372026-06-10
3.0.0-beta.204High risk372026-06-10
3.0.0-beta.205High risk372026-06-10

Block this in CI

PkgRadar gates miolo (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm [email protected]