PkgRadar

npm · registry.npmjs.org

qcobjects-sdk

Remote Dependency Spec: devDependencies.@types/qcobjects="github:QCObjects/-types-qcobjects"

Why PkgRadar flagged 2.4.64

SeveritySignalEvidence
mediumRemote Dependency SpecdevDependencies.@types/qcobjects="github:QCObjects/-types-qcobjects" · package.json
mediumRemote Dependency SpecdevDependencies.@types/qcobjects-sdk="github:QCObjects/-types-qcobjects-sdk" · package.json

Scanned versions

VersionVerdictScoreScanned (UTC)
2.4.64Review42026-06-12
2.4.66Review42026-06-12
2.5.105Low risk02026-06-12
2.5.105-betaLow risk02026-06-12

Block this in CI

PkgRadar gates qcobjects-sdk (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm [email protected]