PkgRadar

npm · registry.npmjs.org

react-native

Known Indicator Filename: package/scripts/bundle.js

Why PkgRadar flagged 0.87.0-nightly-20260528-eaf770433

SeveritySignalEvidence
highKnown Indicator Filenamepackage/scripts/bundle.js · package/scripts/bundle.js

Scanned versions

VersionVerdictScoreScanned (UTC)
0.86.0Low risk02026-06-09
0.87.0-nightly-20260608-2ff3b81dcLow risk02026-06-08
0.87.0-nightly-20260606-510cc0c5eLow risk02026-06-06
0.87.0-nightly-20260605-87184c8fbLow risk02026-06-05
0.87.0-nightly-20260604-63683f091Low risk02026-06-04
0.87.0-nightly-20260602-23ce90bd3Low risk02026-06-02
0.86.0-rc.3Low risk02026-06-02
0.76.9Low risk02026-06-01
0.81.5Low risk02026-06-01
0.87.0-nightly-20260601-57d44a806Low risk02026-06-01
0.87.0-nightly-20260531-9ac12ce0bLow risk02026-05-31
0.87.0-nightly-20260530-9ac12ce0bLow risk02026-05-30
0.87.0-nightly-20260529-88857d22fLow risk02026-05-29
0.87.0-nightly-20260528-eaf770433Review132026-05-28
0.87.0-nightly-20260519-58cd1bf58Review132026-05-25
0.86.0-rc.2Review132026-05-25

Block this in CI

PkgRadar gates react-native (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm [email protected]