PkgRadar

Package evidence

[email protected]

no findings

Trust signals

Why this verdict

PkgRadar discounts a release’s score when public reputation argues against novel malware. The verdict above already reflects these — the panel just explains what was applied.

Weekly downloads
1,447Niche · −30% score
Versions published
28
First published
May 2026
Publisher
dadenjo

Effective trust discount applied: 30% (max across signals — discounts don’t stack). New install-lifecycle deltas vs the previous release would clear the discount.

Recommended action

Looks clean — keep monitoring

No high-signal indicators in the stored static report. PkgRadar will re-check on the next ingest pass.

Block this release in CIcurl · GitHub Actions

Fail the build when this package version is added or upgraded. Replace $PKGRADAR_TOKEN with a Pro / Team API key from your dashboard.

curl -fsS https://pkgradar.com/gate/npm \
  -H "Authorization: Bearer $PKGRADAR_TOKEN" \
  -H "Content-Type: application/json" \
  -d '{"specs":["[email protected]"],"fail_on":"review"}'

GitHub Actions step:

- name: PkgRadar gate
  run: |
    curl -fsS https://pkgradar.com/gate/npm \
      -H "Authorization: Bearer ${{ secrets.PKGRADAR_TOKEN }}" \
      -H "Content-Type: application/json" \
      -d '{"specs":["[email protected]"],"fail_on":"review"}'
Publisherdadenjo
Artifact bytes21,256,400
Previous version0.27.3
Published2026-05-26T19:13:19.433Z
SHA-2560e3313a03d227c93d91551b896bb28417f05061663fa22e5cd0ec29a135944a7

Why flagged

What the scanner saw

No high-signal static finding in the saved report.

Not observed: package install, lifecycle script execution, or sandbox execution. PkgRadar only inspects on-disk artifacts.

Availability ledger

available

low
Last checked
lowRisk
0Score
0.27.4Version
Status history (2 events)
  1. availableavailable · risk low · score 0 · status available -> available, risk high -> low, score 91 -> 0
  2. newavailable · risk high · score 91 · status changed

Related candidates

Linked campaigns and clusters

Repeated static TTPstale

Known Indicator Filename — package/.next/standalone/node_modules/next/dist/compiled/babel/bundle.js

11 members · evidence strength 90

Evidence

Static findings

No findings stored for this release.

Manifest

Package metadata

Scripts10
  • buildnext build --webpack && npm run postbuild
  • devnext dev -p 3001
  • linteslint
  • postbuildcp -r .next/static .next/standalone/.next/static && cp -r public .next/standalone/public && node scripts/patch-standalone.js
  • prebuildnode scripts/scrub-build-secrets.js
  • prepacknode scripts/scan-tarball-for-secrets.js
  • prepublishOnlynpm run build && npm test
  • release-gatebash scripts/ci-release-gate.sh
  • startnext start -p 3001
  • testtsx --test lib/prism/monorepo/__tests__/detect.test.ts lib/prism/license/__tests__/license.test.ts lib/prism/license/__tests__/license-shared.test.ts lib/prism/license/__tests__/lemonsqueezy.test.ts lib/prism/lemonsqueezy/__tests__/tierMapping.test.ts lib/prism/lemonsqueezy/__tests__/client.test.ts lib/prism/blue/__tests__/detectSourceRoot.test.ts lib/prism/blue/__tests__/resolveScanGlobs.test.ts lib/prism/blue/__tests__/classifyBlueprint.test.ts lib/prism/blue/explorer/__tests__/kpiConfig.test.ts lib/prism/blue/explorer/__tests__/filterUtils.test.ts lib/prism/blue/explorer/__tests__/formGroupUtils.test.ts lib/prism/blue/explorer/__tests__/cockpitDeepLink.test.ts lib/prism/blue/__tests__/historyStore.test.ts lib/prism/blue/__tests__/standardsStore.test.ts lib/prism/blue/__tests__/forgeSnapshot.test.ts lib/prism/blue/__tests__/dashboardBadges.test.ts lib/prism/blue/fitness/__tests__/evaluator.test.ts lib/prism/amber/__tests__/engine.test.ts lib/prism/amber/__tests__/llmProvider.test.ts lib/prism/green/__tests__/engine.test.ts lib/prism/green/__tests__/queriesRoute.test.ts lib/prism/green/__tests__/insightsRoute.test.ts lib/prism/amber/__tests__/starterTemplates.test.ts lib/prism/amber/__tests__/bootstrapWithDepth.test.ts lib/prism/amber/__tests__/auditFields.test.ts lib/prism/amber/__tests__/domainContext.test.ts lib/prism/__tests__/apiKeys.test.ts lib/prism/green/__tests__/coherenceScore.test.ts lib/prism/green/__tests__/paths.test.ts lib/prism/green/__tests__/remediationPrompt.test.ts lib/prism/__tests__/features.test.ts lib/prism/monorepo/__tests__/statePaths.test.ts lib/prism/blue/explorer/__tests__/heatHelpers.test.ts lib/prism/blue/explorer/__tests__/qualityUtils.test.ts lib/prism/blue/explorer/__tests__/srcLayoutNormalize.test.ts lib/prism/__tests__/configSchema.test.ts lib/prism/__tests__/sharedConfig.test.ts lib/prism/__tests__/coveragePersistence.test.ts lib/prism/monorepo/__tests__/loc.test.ts lib/prism/blue/todos/__tests__/ccPromptBuilder.test.ts lib/prism/__tests__/solidPrinciples.test.ts lib/prism/__tests__/cleanArchitecture.test.ts lib/prism/__tests__/hexagonalArchitecture.test.ts lib/prism/__tests__/c4Model.test.ts lib/prism/__tests__/twelveFactorApp.test.ts lib/prism/__tests__/frameworkDetector.test.ts lib/prism/__tests__/teamPatterns.test.ts lib/prism/__tests__/doraMetrics.test.ts lib/prism/__tests__/conwaysLaw.test.ts lib/prism/__tests__/wardleyMap.test.ts lib/prism/__tests__/iso25010.test.ts lib/prism/__tests__/enterpriseIntegrationPatterns.test.ts lib/prism/__tests__/dddMapper.test.ts lib/prism/__tests__/okrs.test.ts lib/prism/__tests__/alertEngine.test.ts lib/prism/__tests__/alertDelivery.test.ts lib/prism/__tests__/cognitiveLoad.test.ts lib/prism/__tests__/configStore.test.ts lib/prism/__tests__/selfHeal.test.ts lib/prism/__tests__/achievements.test.ts lib/prism/__tests__/snapshots.test.ts lib/prism/__tests__/knowledgeGraph.test.ts lib/prism/__tests__/marketingDrift.test.ts lib/prism/nav/__tests__/buildNav.test.ts
Dependencies13
  • @anthropic-ai/sdk^0.97.1
  • @tailwindcss/typography^0.5.19
  • @types/dagre^0.7.54
  • @xyflow/react^12.10.2
  • dagre^0.8.5
  • next16.2.6
  • prism-metrics^0.3.0
  • prismlens^0.25.0
  • react19.2.4
  • react-dom19.2.4
  • react-markdown^10.1.0
  • remark-gfm^4.0.1
  • ts-morph^28.0.0
Optional dependencies1
  • keytar^7.9.0