PkgRadar

npm · registry.npmjs.org

sigapp-componentes

Remote Dependency Spec: devDependencies.expo-draw="git+https://github.com/MarangoniEduardo/expo-draw.git"

Why PkgRadar flagged 2.0.14

SeveritySignalEvidence
mediumRemote Dependency SpecdevDependencies.expo-draw="git+https://github.com/MarangoniEduardo/expo-draw.git" · package.json

Scanned versions

VersionVerdictScoreScanned (UTC)
2.0.14Review42026-06-11
2.0.13Review42026-06-03
2.0.12Review42026-06-03
2.0.10Review42026-05-27
2.0.11Review42026-05-27
2.0.8Review42026-05-26
2.0.9Review42026-05-26

Block this in CI

PkgRadar gates sigapp-componentes (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm [email protected]