PkgRadar

npm · registry.npmjs.org

rainbow-node-sdk

Remote Dependency Spec: devDependencies.rainbow_hub_sheets_generation="git+https://github.com/Rainbow-CPaaS/Rainbow-Hub-Sheets-Generation.git"

Why PkgRadar flagged 2.42.0-lts.6

SeveritySignalEvidence
mediumRemote Dependency SpecdevDependencies.rainbow_hub_sheets_generation="git+https://github.com/Rainbow-CPaaS/Rainbow-Hub-Sheets-Generation.git" · package.json

Scanned versions

VersionVerdictScoreScanned (UTC)
2.42.0-lts.6Review22026-06-08
2.42.0-lts.4Review22026-06-08
2.42.0-lts.5Review22026-06-08
2.44.0Review22026-06-08
2.45.0Review22026-06-08

Block this in CI

PkgRadar gates rainbow-node-sdk (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm [email protected]