PkgRadar

npm · registry.npmjs.org

nottuff12

Large Javascript Payload: 5400022 bytes

Why PkgRadar flagged 1.7.7

SeveritySignalEvidence
mediumLarge Javascript Payload5400022 bytes · package/assets/73sxysj46r.js
mediumLarge Javascript Payload5965363 bytes · package/assets/mh5v4t7fxj.js
mediumLarge Javascript Payload6234818 bytes · package/assets/xbal01i589.js
mediumLarge Javascript Payload2110853 bytes · package/j3ve9/ls3ez.mjs

Scanned versions

VersionVerdictScoreScanned (UTC)
1.7.7Review402026-05-27
1.1.7Low risk02026-05-27

Block this in CI

PkgRadar gates nottuff12 (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm [email protected]