PkgRadar

npm · registry.npmjs.org

monastery

Remote Dependency Spec: devDependencies.standard-version="github:boycce/standard-version"

Why PkgRadar flagged 4.0.5

SeveritySignalEvidence
mediumRemote Dependency SpecdevDependencies.standard-version="github:boycce/standard-version" · package.json

Scanned versions

VersionVerdictScoreScanned (UTC)
4.0.5Review22026-06-13
4.0.4Review22026-06-13
4.0.3Review22026-06-13
3.5.14Review22026-06-13
4.0.2Review22026-06-13
3.5.15Review22026-06-13
4.0.1Review22026-06-13

Block this in CI

PkgRadar gates monastery (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm [email protected]
monastery — npm security scan | PkgRadar