Recommended action
Review before promotingMixed signals: the package has indicators worth reading before allowing the update in automated dependency flows.
Block this release in CIcurl · GitHub Actions
Fail the build when this package version is added or upgraded. Replace $PKGRADAR_TOKEN with a Pro / Team API key from your dashboard.
curl -fsS https://pkgradar.com/gate/npm \
-H "Authorization: Bearer $PKGRADAR_TOKEN" \
-H "Content-Type: application/json" \
-d '{"specs":["@rh-support/[email protected]"],"fail_on":"review"}'GitHub Actions step:
- name: PkgRadar gate
run: |
curl -fsS https://pkgradar.com/gate/npm \
-H "Authorization: Bearer ${{ secrets.PKGRADAR_TOKEN }}" \
-H "Content-Type: application/json" \
-d '{"specs":["@rh-support/[email protected]"],"fail_on":"review"}'Why flagged
What the scanner saw
Remote Payload: matched "CUrl "
Not observed: package install, lifecycle script execution, or sandbox execution. PkgRadar only inspects on-disk artifacts.
Availability ledger
available
Status history (1 event)
- new → available · risk review · score 84 · status changed
Evidence
Static findings
19 static · 0 from release diff · showing high-signal first.
| Severity | Kind | Path | Detail | Points |
|---|---|---|---|---|
| medium | Remote Payload | package/lib/esm/components/CaseEditView/Tabs/CaseDetails/CaseDetailsManagement.js | matched "CUrl " | 12 |
| medium | Remote Payload | package/lib/esm/components/CaseEditView/ShareCase/PartnerShare.js | matched "CUrl " | 12 |
| medium | Remote Payload | package/lib/esm/utils/remoteRiderUtils.js | matched "cUrl " | 12 |
Show all 19 findings (low-signal and informational)
| Severity | Kind | Path | Detail | Points |
|---|---|---|---|---|
| medium | Remote Payload | package/lib/esm/components/CaseEditView/Tabs/CaseDetails/CaseDetailsManagement.js | matched "CUrl " | 12 |
| medium | Remote Payload | package/lib/esm/components/CaseEditView/ShareCase/PartnerShare.js | matched "CUrl " | 12 |
| medium | Remote Payload | package/lib/esm/utils/remoteRiderUtils.js | matched "cUrl " | 12 |
| low | Obfuscation | package/lib/esm/components/CaseEditView/Tabs/CaseDiscussion/CaseExternalTrackerUpdate.js | matched "\\u00B7" | 3 |
| low | Obfuscation | package/lib/esm/components/CaseInformation/CaseInformation.js | matched "\\u00A0" | 3 |
| low | Obfuscation | package/lib/esm/components/CaseEditView/CaseOverview/CaseOwnerInfo.js | matched "\\u00A0" | 3 |
| low | Obfuscation | package/lib/esm/components/CaseEditView/Tabs/CaseSummary/CaseSummary.js | matched "\\u2019" | 3 |
| low | Obfuscation | package/lib/esm/components/CaseManagement/ESSRemoteSessionCheckBox.js | matched "\\u2019" | 3 |
| low | Obfuscation | package/lib/esm/components/IdeaInformation/IdeaInformation.js | matched "\\u00A0" | 3 |
| low | Obfuscation | package/lib/esm/components/CaseEditView/RequestRemoteSession/NewEssTermsModal.js | matched "\\u2019" | 3 |
| low | Obfuscation | package/lib/esm/components/ConfirmationModals/PreferredSecureSupportModal.js | matched "\\u00A0" | 3 |
| low | Obfuscation | package/lib/esm/components/Recommendations/RecommendationInfoBox.js | matched "\\u2019" | 3 |
| low | Obfuscation | package/lib/esm/components/Recommendations/Recommendations.js | matched "\\u2013" | 3 |
| low | Obfuscation | package/lib/esm/components/CaseEditView/RequestRemoteSession/RemoteSessionAgreementModal.js | matched "\\u2019" | 3 |
| low | Obfuscation | package/lib/esm/components/SubmitCase/ResubmitToast.js | matched "\\u2019" | 3 |
| low | Obfuscation | package/lib/esm/components/CaseInformation/Severity.js | matched "\\u00A0" | 3 |
| low | Obfuscation | package/lib/esm/components/SubmitCase/SubmitCase.js | matched "\\u00A0" | 3 |
| low | Obfuscation | package/lib/esm/components/TroubleshootSection/TroubleshootSection.js | matched "\\u2019" | 3 |
| low | Obfuscation | package/lib/esm/components/shared/useIsSectionValid.js | matched "\\u00A0" | 3 |
Manifest
Package metadata
Scripts14
buildnpm run clean && npm run build:esmbuild:esm../../node_modules/.bin/tsc -p config/tsconfig.json && npm run copy:cssbuild:watch../../node_modules/.bin/tsc -w -p config/tsconfig.json & npm run watch:cssclean../../node_modules/.bin/rimraf lib config/tsconfig.tsbuildinfocopy:css../../node_modules/.bin/copyfiles -V -u 1 -a src/**/**/*.css src/**/**/*.scss lib/esmprepublishnpm run clean && npm run build:esmprepublishOnlynpm run buildtestnpm run test:changestest:changes./../../node_modules/.bin/jest --passWithNoTests -c ./../../configs/tests/jest-only-changed-from-upstream.jstest:coverage./../../node_modules/.bin/jest --all -c ./../../configs/tests/jest.config.coverage.jstest:snap./../../node_modules/.bin/jest -c ./../../configs/tests/jest.config.snapshot.jstest:unit./../../node_modules/.bin/jest -c ./../../configs/tests/jest.config.unit.jstest:watch./../../node_modules/.bin/jest --watchAll -c ./../../configs/tests/jest.config.unit.jswatch:css./../../node_modules/.bin/chokidar 'src/**/*.(css|scss)' -c '../../node_modules/.bin/copyfiles -V -u 1 -a {path} lib/esm'
Dependencies40
@cee-eng/hydrajs4.18.111@cee-eng/ui-toolkit1.1.9@ifd-ui/ask-redhat-core^0.0.56@patternfly/patternfly6.2.1@patternfly/react-core6.2.1@patternfly/react-table6.2.1@progress/kendo-drawing^1.6.0@progress/kendo-licensing1.3.5@progress/kendo-react-pdf^5.16.0@redux-devtools/extension^3.3.0@rh-support/components2.5.157@rh-support/react-context2.5.247@rh-support/types2.0.19@rh-support/user-permissions2.5.104@rh-support/utils2.5.85@types/react-redux^7.1.33@types/redux^3.6.0date-fns3.6.0dompurify^2.2.6dot^1.1.3history4.10.1i18next^23.15.0js-markdown-extra^1.2.4js-worker-search^1.4.1lazysizes^5.3.2localforage^1.10.0lodash^4.17.21mark.js^8.11.1marked^1.2.4qs^6.7.0- …and 10 more.