PkgRadar

Package evidence

@vertexvis/[email protected]

no findings

Trust signals

Why this verdict

PkgRadar discounts a release’s score when public reputation argues against novel malware. The verdict above already reflects these — the panel just explains what was applied.

Versions published
84Mature · −50% score
First published
May 2021
Publisher
nick-vertex

Effective trust discount applied: 50% (max across signals — discounts don’t stack). New install-lifecycle deltas vs the previous release would clear the discount.

Recommended action

Looks clean — keep monitoring

No high-signal indicators in the stored static report. PkgRadar will re-check on the next ingest pass.

Block this release in CIcurl · GitHub Actions

Fail the build when this package version is added or upgraded. Replace $PKGRADAR_TOKEN with a Pro / Team API key from your dashboard.

curl -fsS https://pkgradar.com/gate/npm \
  -H "Authorization: Bearer $PKGRADAR_TOKEN" \
  -H "Content-Type: application/json" \
  -d '{"specs":["@vertexvis/[email protected]"],"fail_on":"review"}'

GitHub Actions step:

- name: PkgRadar gate
  run: |
    curl -fsS https://pkgradar.com/gate/npm \
      -H "Authorization: Bearer ${{ secrets.PKGRADAR_TOKEN }}" \
      -H "Content-Type: application/json" \
      -d '{"specs":["@vertexvis/[email protected]"],"fail_on":"review"}'
Publishernick-vertex
Artifact bytes205,435
Previous version0.41.0
Published2026-04-15T22:43:45.227Z
SHA-256dc492480bf6809a605623ce1f4062983f08ade6d5805dd878040d1b17cd437a0

Why flagged

What the scanner saw

No high-signal static finding in the saved report.

Not observed: package install, lifecycle script execution, or sandbox execution. PkgRadar only inspects on-disk artifacts.

Availability ledger

available

low
Last checked
lowRisk
0Score
0.42.0Version
Status history (1 event)
  1. newavailable · risk low · score 0 · status changed

Evidence

Static findings

No findings stored for this release.

Manifest

Package metadata

Scripts16
  • buildtsc --project tsconfig.json && tsc --project tsconfig-esm.json
  • cleanrm -rf dist/
  • clean-buildyarn clean && yarn build
  • formatprettier --write './**/*.+(js|jsx|ts|tsx|json|yml|yaml|md|mdx|html|css)'
  • generate./scripts/generate.sh
  • generate:docstypedoc --tsconfig tsconfig.json
  • linteslint . --ext .ts
  • postpublishpinst --enable
  • pre-commityarn lint && yarn format
  • prepublishOnlypinst --disable
  • push:version./scripts/push_version.sh
  • testjest
  • test:funcyarn clean-build && node dist/functional-test.js
  • verifyyarn clean-build && yarn test --coverage && node dist/cjs/verify.js
  • version./scripts/version.sh
  • watchjest --watch
Dependencies2
  • axios1.11.0
  • p-limit^3