PkgRadar

npm · registry.npmjs.org

offgrid-ai

Install-time lifecycle script: postinstall="node src/postinstall.mjs"

Why PkgRadar flagged 0.3.25

SeveritySignalEvidence
highNew Lifecycle Script Vs Previouspostinstall added in 0.3.25 vs 0.3.24: "node src/postinstall.mjs" · package.json

Scanned versions

VersionVerdictScoreScanned (UTC)
0.4.0Review52026-06-08
0.3.31Review52026-06-08
0.3.30Review52026-06-08
0.3.29Review52026-06-08
0.3.28Review52026-06-08
0.3.27Review52026-06-08
0.3.26Review52026-06-08
0.3.25High risk452026-06-07
0.3.24Low risk02026-06-07
0.3.23Low risk02026-06-07
0.3.22Low risk02026-06-07
0.3.21Low risk02026-06-07
0.3.20Low risk02026-06-07
0.3.19Low risk02026-06-07
0.3.18Low risk02026-06-07
0.3.17Low risk02026-06-07
0.3.16Low risk02026-06-07
0.3.15Low risk02026-06-07
0.3.14Low risk02026-06-07
0.3.13Low risk02026-06-07
0.3.11Low risk02026-06-07
0.3.12Low risk02026-06-07
0.3.10Low risk02026-06-07
0.3.9Low risk02026-06-07
0.3.8Low risk02026-06-07
0.3.6Low risk02026-06-07
0.3.7Low risk02026-06-07
0.3.5Low risk02026-06-07
0.3.4Low risk02026-06-07
0.3.2Low risk02026-06-07
0.3.1Low risk02026-06-07
0.3.0Low risk02026-06-07
0.2.9Low risk02026-06-07
0.2.8Low risk02026-06-07
0.2.7Low risk02026-06-07
0.2.6Low risk02026-06-07
0.2.5Low risk02026-06-07
0.2.4Low risk02026-06-07
0.2.3Low risk02026-06-07
0.2.2Low risk02026-06-06
0.2.1Low risk02026-06-06
0.2.0Low risk02026-06-06
0.1.2Low risk02026-06-06

Block this in CI

PkgRadar gates offgrid-ai (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm [email protected]