@atlaspack/types-internal
Advanced tools
+5
-5
| { | ||
| "name": "@atlaspack/types-internal", | ||
| "version": "2.14.1-canary.499+de388ff76", | ||
| "version": "2.14.1-canary.500+bddd21a53", | ||
| "license": "(MIT OR Apache-2.0)", | ||
@@ -19,9 +19,9 @@ "main": "./lib/index.js", | ||
| "dependencies": { | ||
| "@atlaspack/diagnostic": "2.14.1-canary.499+de388ff76", | ||
| "@atlaspack/feature-flags": "2.14.1-canary.499+de388ff76", | ||
| "@atlaspack/source-map": "3.2.11-canary.4210+de388ff76", | ||
| "@atlaspack/diagnostic": "2.14.1-canary.500+bddd21a53", | ||
| "@atlaspack/feature-flags": "2.14.1-canary.500+bddd21a53", | ||
| "@atlaspack/source-map": "3.2.11-canary.4211+bddd21a53", | ||
| "utility-types": "^3.10.0" | ||
| }, | ||
| "type": "commonjs", | ||
| "gitHead": "de388ff76d39dece97ad475fcccdb6efb6283bfc" | ||
| "gitHead": "bddd21a5313974ca333c02b2da1c6f85d1afaaea" | ||
| } |
Manifest confusion
Supply chain riskThis package has inconsistent metadata. This could be malicious or caused by an error when publishing the package.
Found 1 instance in 1 package
Dynamic require
Supply chain riskDynamic require can indicate the package is performing dangerous or unsafe dynamic code execution.
Found 1 instance in 1 package
Environment variable access
Supply chain riskPackage accesses environment variables, which may be a sign of credential stuffing or data theft.
Found 1 instance in 1 package
Filesystem access
Supply chain riskAccesses the file system, and could potentially read sensitive data.
Found 1 instance in 1 package
Long strings
Supply chain riskContains long string literals, which may be a sign of obfuscated or packed code.
Found 1 instance in 1 package
Manifest confusion
Supply chain riskThis package has inconsistent metadata. This could be malicious or caused by an error when publishing the package.
Found 1 instance in 1 package
Dynamic require
Supply chain riskDynamic require can indicate the package is performing dangerous or unsafe dynamic code execution.
Found 1 instance in 1 package
Environment variable access
Supply chain riskPackage accesses environment variables, which may be a sign of credential stuffing or data theft.
Found 1 instance in 1 package
Filesystem access
Supply chain riskAccesses the file system, and could potentially read sensitive data.
Found 1 instance in 1 package
Long strings
Supply chain riskContains long string literals, which may be a sign of obfuscated or packed code.
Found 1 instance in 1 package