PyPI · pypi.org
fast-resume
Credential File Packaged: fast_resume-1.18.0/node_modules/bottleneck/.env
Why PkgRadar flagged 1.18.0
| Severity | Signal | Evidence |
|---|---|---|
| high | Credential File Packaged | fast_resume-1.18.0/node_modules/bottleneck/.env · fast_resume-1.18.0/node_modules/bottleneck/.env |
| high | Credential File Packaged | fast_resume-1.18.0/node_modules/nerf-dart/.npmrc · fast_resume-1.18.0/node_modules/nerf-dart/.npmrc |
| medium | Credential file access | matched ".npmrc" · fast_resume-1.18.0/node_modules/@pnpm/npm-conf/index.js |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
1.18.0 | High risk | 85 | 2026-06-03 |
1.17.3 | High risk | 85 | 2026-05-30 |
Block this in CI
pkgradar gate --ecosystem pypi fast-resume==1.18.0