npm · registry.npmjs.org
svf-lib
Install Lifecycle Binary Exec: postinstall="./llvm_install.sh"
Why PkgRadar flagged 1.0.2601
| Severity | Signal | Evidence |
|---|---|---|
| medium | Install Lifecycle Binary Exec | postinstall="./llvm_install.sh" · package.json |
| medium | Remote Payload | matched "github.com/bjjwwang/SVF-LLVM/releases/download" · package/llvm_install.sh |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
1.0.2601 | Review | 9 | 2026-06-08 |
1.0.2600 | Review | 9 | 2026-06-08 |
1.0.2599 | Review | 9 | 2026-06-08 |
1.0.2598 | Review | 9 | 2026-06-08 |
1.0.2597 | Review | 9 | 2026-06-08 |
1.0.2596 | Review | 9 | 2026-06-08 |
1.0.2595 | Review | 9 | 2026-06-08 |
1.0.2593 | Review | 9 | 2026-06-08 |
1.0.2594 | Review | 9 | 2026-06-08 |
1.0.2592 | Review | 9 | 2026-06-08 |
1.0.2589 | Review | 9 | 2026-06-08 |
1.0.2591 | Review | 5 | 2026-06-02 |
1.0.2590 | Review | 5 | 2026-06-02 |
1.0.2588 | Review | 5 | 2026-06-02 |
1.0.2587 | Review | 5 | 2026-06-02 |
1.0.2586 | Review | 5 | 2026-06-02 |
1.0.2584 | Review | 5 | 2026-06-01 |
1.0.2585 | Review | 5 | 2026-06-01 |
Block this in CI
pkgradar gate --ecosystem npm [email protected]