PkgRadar

npm · registry.npmjs.org

pinusmod-kcp

Remote Dependency Spec: devDependencies.@types/mqtt-connection="git+https://gitee.com/xxbruce/types-mqtt-connection.git"

Why PkgRadar flagged 1.9.6

SeveritySignalEvidence
mediumRemote Dependency SpecdevDependencies.@types/mqtt-connection="git+https://gitee.com/xxbruce/types-mqtt-connection.git" · package.json

Scanned versions

VersionVerdictScoreScanned (UTC)
1.9.6Review42026-06-03
1.9.7Review42026-06-03

Block this in CI

PkgRadar gates pinusmod-kcp (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm [email protected]