npm · registry.npmjs.org
sqlfu
Webhook Exfil Endpoint: matched "ngrok.app"
Why PkgRadar flagged 0.0.2-1
| Severity | Signal | Evidence |
|---|---|---|
| high | Webhook Exfil Endpoint | matched "ngrok.app" · package/dist/ui/server.js |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
0.0.2-1 | High risk | 40 | 2026-06-11 |
0.0.2-2 | High risk | 40 | 2026-06-11 |
0.0.2-3 | High risk | 40 | 2026-06-11 |
0.0.3-13 | High risk | 40 | 2026-06-11 |
0.0.3-14 | High risk | 40 | 2026-06-11 |
0.0.3-15 | High risk | 40 | 2026-06-11 |
0.1.0 | High risk | 40 | 2026-06-11 |
Block this in CI
pkgradar gate --ecosystem npm [email protected]