@ace-de/eua-translations-sync
Advanced tools
Comparing version 2.1.0 to 2.1.1
{ | ||
"name": "@ace-de/eua-translations-sync", | ||
"version": "2.1.0", | ||
"version": "2.1.1", | ||
"description": "EUA sync local translate with Google sheet", | ||
@@ -17,3 +17,4 @@ "author": "Computer Rock", | ||
"bin", | ||
"scripts" | ||
"scripts", | ||
"utils" | ||
], | ||
@@ -29,3 +30,3 @@ "bin": { | ||
}, | ||
"gitHead": "8000047ab56d5a70204efd022d11db2e4a95f704" | ||
"gitHead": "60dac06c67a2f17fc7895926cb336a64bdc131d2" | ||
} |
Dynamic require
Supply chain riskDynamic require can indicate the package is performing dangerous or unsafe dynamic code execution.
Found 1 instance in 1 package
Environment variable access
Supply chain riskPackage accesses environment variables, which may be a sign of credential stuffing or data theft.
Found 1 instance in 1 package
New author
Supply chain riskA new npm collaborator published a version of the package for the first time. New collaborators are usually benign additions to a project, but do indicate a change to the security surface area of a package.
Found 1 instance in 1 package
34863
14
734
0
50