PkgRadar

npm · registry.npmjs.org

pybao-xc-sdk

Install Lifecycle Suppresses Failure: postinstall="node install.cjs || true"

Why PkgRadar flagged 1.5.89

SeveritySignalEvidence
highInstall Lifecycle Suppresses Failurepostinstall="node install.cjs || true" · package.json

Scanned versions

VersionVerdictScoreScanned (UTC)
1.5.89High risk252026-06-13
1.5.88High risk252026-06-13
1.5.87High risk252026-06-10
1.5.86High risk252026-06-10
1.5.85High risk252026-06-10
1.5.84High risk252026-06-10
1.5.82High risk252026-06-10
1.5.81High risk252026-06-10
1.5.102High risk252026-06-10
1.5.101High risk252026-06-10
1.5.100High risk252026-06-10
1.5.99High risk252026-06-10
1.5.98High risk252026-06-10
1.5.97High risk252026-06-10
1.5.96High risk252026-06-10
1.5.94High risk252026-06-10
1.5.92High risk252026-06-10
1.5.93High risk252026-06-10
1.5.90High risk252026-06-10
1.5.91High risk252026-06-10
1.5.80High risk252026-06-10
1.5.78High risk252026-06-10
1.5.77High risk252026-06-10
1.5.75High risk252026-06-10
1.5.73High risk252026-06-10
1.5.70High risk252026-06-10
1.5.79High risk252026-06-10
1.5.71High risk252026-06-10
1.5.74High risk252026-06-10
1.5.72High risk252026-06-10
1.5.68High risk252026-06-10

Block this in CI

PkgRadar gates pybao-xc-sdk (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm [email protected]