PyPI · pypi.org
dara-core
Credential File Packaged: dara/core/js_tooling/templates/.npmrc
Why PkgRadar flagged 1.28.5
| Severity | Signal | Evidence |
|---|---|---|
| high | Credential File Packaged | dara/core/js_tooling/templates/.npmrc · dara/core/js_tooling/templates/.npmrc |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
1.28.5 | High risk | 20 | 2026-06-12 |
1.28.4 | High risk | 20 | 2026-06-12 |
1.28.3 | High risk | 20 | 2026-06-12 |
1.28.2 | High risk | 20 | 2026-06-08 |
1.28.1 | High risk | 20 | 2026-06-04 |
1.28.0 | High risk | 20 | 2026-06-01 |
1.27.1 | High risk | 20 | 2026-05-30 |
Block this in CI
pkgradar gate --ecosystem pypi dara-core==1.28.5