npm · registry.npmjs.org
taon
Remote Payload: matched "curl "
Why PkgRadar flagged 21.0.104
| Severity | Signal | Evidence |
|---|---|---|
| medium | Remote Payload | matched "curl " · package/lib-esm/lib/endpoint-context.js |
| medium | Remote Payload | matched "curl " · package/lib-prod/endpoint-context.js |
| medium | Remote Payload | matched "curl " · package/lib/endpoint-context.js |
| medium | Remote Payload | matched "curl " · package/websql-prod/fesm2022/taon-websql-prod.mjs |
| medium | Remote Payload | matched "curl " · package/websql/fesm2022/taon-websql.mjs |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
21.0.120 | Low risk | 0 | 2026-06-05 |
21.0.122 | Low risk | 0 | 2026-06-05 |
21.0.104 | Review | 50 | 2026-05-24 |
21.0.105 | Review | 50 | 2026-05-24 |
Related campaigns
- darekf77 — 10 releases, max score 143
Block this in CI
pkgradar gate --ecosystem npm [email protected]