@atlaspack/types-internal
Advanced tools
+5
-5
| { | ||
| "name": "@atlaspack/types-internal", | ||
| "version": "2.14.1-canary.496+ad3c8223a", | ||
| "version": "2.14.1-canary.497+cbc815a23", | ||
| "license": "(MIT OR Apache-2.0)", | ||
@@ -19,9 +19,9 @@ "main": "./lib/index.js", | ||
| "dependencies": { | ||
| "@atlaspack/diagnostic": "2.14.1-canary.496+ad3c8223a", | ||
| "@atlaspack/feature-flags": "2.14.1-canary.496+ad3c8223a", | ||
| "@atlaspack/source-map": "3.2.10-canary.4207+ad3c8223a", | ||
| "@atlaspack/diagnostic": "2.14.1-canary.497+cbc815a23", | ||
| "@atlaspack/feature-flags": "2.14.1-canary.497+cbc815a23", | ||
| "@atlaspack/source-map": "3.2.10-canary.4208+cbc815a23", | ||
| "utility-types": "^3.10.0" | ||
| }, | ||
| "type": "commonjs", | ||
| "gitHead": "ad3c8223ab1abce9e8da81239cc56f27d37c7cad" | ||
| "gitHead": "cbc815a23907e081b7203bdea37bd57befdd4b9e" | ||
| } |
Manifest confusion
Supply chain riskThis package has inconsistent metadata. This could be malicious or caused by an error when publishing the package.
Found 1 instance in 1 package
Dynamic require
Supply chain riskDynamic require can indicate the package is performing dangerous or unsafe dynamic code execution.
Found 1 instance in 1 package
Environment variable access
Supply chain riskPackage accesses environment variables, which may be a sign of credential stuffing or data theft.
Found 1 instance in 1 package
Filesystem access
Supply chain riskAccesses the file system, and could potentially read sensitive data.
Found 1 instance in 1 package
Long strings
Supply chain riskContains long string literals, which may be a sign of obfuscated or packed code.
Found 1 instance in 1 package
Manifest confusion
Supply chain riskThis package has inconsistent metadata. This could be malicious or caused by an error when publishing the package.
Found 1 instance in 1 package
Dynamic require
Supply chain riskDynamic require can indicate the package is performing dangerous or unsafe dynamic code execution.
Found 1 instance in 1 package
Environment variable access
Supply chain riskPackage accesses environment variables, which may be a sign of credential stuffing or data theft.
Found 1 instance in 1 package
Filesystem access
Supply chain riskAccesses the file system, and could potentially read sensitive data.
Found 1 instance in 1 package
Long strings
Supply chain riskContains long string literals, which may be a sign of obfuscated or packed code.
Found 1 instance in 1 package