PkgRadar

npm · registry.npmjs.org

repoburg

Credential File Packaged: package/backend/.env

Why PkgRadar flagged 1.3.161

SeveritySignalEvidence
highCredential File Packagedpackage/backend/.env · package/backend/.env

Scanned versions

VersionVerdictScoreScanned (UTC)
0.1.23Low risk02026-06-15
0.1.25Low risk02026-06-15
0.1.26Low risk02026-06-15
1.3.161High risk242026-06-15
1.3.153High risk242026-06-10
1.3.152High risk242026-06-10
1.3.150High risk242026-06-10
1.3.149High risk242026-06-10
1.3.148High risk242026-06-10
1.3.147High risk242026-06-10
1.3.160High risk242026-06-10
1.3.159High risk242026-06-10
1.3.158High risk242026-06-10
1.3.157High risk242026-06-10
1.3.156High risk242026-06-10
1.3.155High risk242026-06-10
1.3.154High risk242026-06-10
1.3.146High risk242026-06-10
1.3.145Review352026-05-25
1.3.143Review352026-05-24
1.3.144Review352026-05-24

Block this in CI

PkgRadar gates repoburg (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm [email protected]