PkgRadar

npm · registry.npmjs.org

sophhub

Credential file access: matched ".npmrc"

Scanned versions

VersionVerdictScoreScanned (UTC)
0.4.45Review32026-06-17
0.4.44Review32026-06-17
0.4.43Review32026-06-16
0.4.42Review32026-06-16
0.4.41Review32026-06-09
0.4.40Review32026-06-09
0.4.39Review32026-06-09
0.4.38Review32026-06-09
0.4.37Review32026-06-09
0.4.36Review32026-06-09
0.4.35Review32026-06-08
0.4.34Low risk02026-06-01
0.4.33Low risk02026-06-01
0.4.31Low risk02026-05-28
0.4.32Low risk02026-05-28
0.4.28Review532026-05-26
0.4.29Review532026-05-26
0.4.26Review792026-05-25
0.4.27Review792026-05-25

Block this in CI

PkgRadar gates sophhub (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem npm [email protected]