npm · registry.npmjs.org
n20-common-lib
Credential file access: matched "ID_RSA"
Why PkgRadar flagged 3.1.9
| Severity | Signal | Evidence |
|---|---|---|
| high | Credential file access | matched "ID_RSA" · package/src/plugins/Sign/Itrus/index.js |
| high | Credential file access | matched "ID_RSA" · package/src/plugins/Sign/Itrus/sign_3720.js |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
2.22.41 | Low risk | 0 | 2026-06-17 |
3.2.4 | Low risk | 0 | 2026-06-15 |
3.2.3 | Low risk | 0 | 2026-06-15 |
3.2.2 | Low risk | 0 | 2026-06-11 |
3.2.1 | Low risk | 0 | 2026-06-11 |
2.22.40 | Low risk | 0 | 2026-06-11 |
2.22.39 | Low risk | 0 | 2026-06-09 |
3.2.0 | Low risk | 0 | 2026-06-09 |
3.1.21 | Low risk | 0 | 2026-06-04 |
3.1.20 | Low risk | 0 | 2026-06-03 |
3.1.19 | Low risk | 0 | 2026-06-02 |
3.1.18 | Low risk | 0 | 2026-06-02 |
3.1.17 | Low risk | 0 | 2026-06-02 |
3.1.15 | Low risk | 0 | 2026-06-02 |
3.1.16 | Low risk | 0 | 2026-06-02 |
3.1.14 | Low risk | 0 | 2026-05-29 |
3.1.13 | Low risk | 0 | 2026-05-29 |
3.1.12 | Low risk | 0 | 2026-05-28 |
3.1.11 | Low risk | 0 | 2026-05-27 |
3.1.9 | Review | 50 | 2026-05-25 |
3.1.10 | Review | 50 | 2026-05-25 |
Related campaigns
- nstc-wuhan — 2 releases, max score 86
Block this in CI
pkgradar gate --ecosystem npm [email protected]