PkgRadar

npm · registry.npmjs.org

nitro-web

Remote Dependency Spec: dependencies.standard-version="github:boycce/standard-version"

Why PkgRadar flagged 0.2.7

SeveritySignalEvidence
mediumRemote Dependency Specdependencies.standard-version="github:boycce/standard-version" · package.json

Scanned versions

VersionVerdictScoreScanned (UTC)
0.2.7Review62026-06-17
0.2.6Review62026-06-15
0.2.5Review62026-06-15
0.2.4Review62026-06-10
0.2.1Review62026-06-10
0.2.2Review62026-06-03
0.2.3Review62026-06-03

Block this in CI

PkgRadar gates nitro-web (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm [email protected]
nitro-web — npm security scan | PkgRadar