PkgRadar

npm · registry.npmjs.org

sloppycode

Large Javascript Payload: 24118723 bytes

Why PkgRadar flagged 0.2.133

SeveritySignalEvidence
mediumLarge Javascript Payload24118723 bytes · package/bundle/index.js
mediumLarge Javascript Payload20343057 bytes · package/bundle/worker.js

Scanned versions

VersionVerdictScoreScanned (UTC)
0.2.148Low risk02026-06-13
0.2.147Low risk02026-06-06
0.2.146Low risk02026-06-03
0.2.145Low risk02026-06-03
0.2.143Low risk02026-06-03
0.2.142Low risk02026-06-02
0.2.141Low risk02026-06-02
0.2.140Low risk02026-06-02
0.2.138Low risk02026-06-02
0.2.137Low risk02026-06-02
0.2.136Low risk02026-05-31
0.2.135Low risk02026-05-30
0.2.134Low risk02026-05-29
0.2.133Review62026-05-28
0.2.130Review12026-05-28
0.2.129Review12026-05-27
0.2.128Review12026-05-27
0.2.127Review12026-05-26
0.2.126Review12026-05-26
0.2.125Review172026-05-25
0.2.124Review172026-05-24
0.2.123Review172026-05-24
0.2.122Review172026-05-24
0.2.121Review172026-05-24

Block this in CI

PkgRadar gates sloppycode (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm [email protected]