@axelar-network/axelar-cgp-aptos
Advanced tools
Comparing version 1.0.3 to 1.0.4
{ | ||
"name": "@axelar-network/axelar-cgp-aptos", | ||
"version": "1.0.3", | ||
"version": "1.0.4", | ||
"description": "", | ||
"scripts": { | ||
"test": "jest", | ||
"build-aptos": "./aptos/build.sh", | ||
"build": "run-s build-aptos", | ||
"postinstall": "run-s build", | ||
"lint": "eslint 'test/**/*.js'", | ||
"prettier": "prettier --write 'test/**/*.js' 'src/**/*.ts'" | ||
}, | ||
"license": "ISC", | ||
"dependencies": { | ||
"aptos": "^1.3.16", | ||
"dotenv": "^16.0.3" | ||
}, | ||
"devDependencies": { | ||
"npm-run-all": "^4.1.5" | ||
} | ||
"files": [ | ||
"aptos/modules/axelar" | ||
], | ||
"license": "ISC" | ||
} |
License Policy Violation
LicenseThis package is not allowed per your license policy. Review the package's license to ensure compliance.
Found 1 instance in 1 package
Native code
Supply chain riskContains native code (e.g., compiled binaries or shared libraries). Including native code can obscure malicious behavior.
Found 2 instances in 1 package
New author
Supply chain riskA new npm collaborator published a version of the package for the first time. New collaborators are usually benign additions to a project, but do indicate a change to the security surface area of a package.
Found 1 instance in 1 package
License Policy Violation
LicenseThis package is not allowed per your license policy. Review the package's license to ensure compliance.
Found 1 instance in 1 package
Install scripts
Supply chain riskInstall scripts are run when the package is installed. The majority of malware in npm is hidden in install scripts.
Found 1 instance in 1 package
14363
0
0
0
4
- Removedaptos@^1.3.16
- Removeddotenv@^16.0.3
- Removed@aptos-labs/aptos-client@0.1.1(transitive)
- Removed@noble/hashes@1.3.3(transitive)
- Removed@scure/base@1.1.9(transitive)
- Removed@scure/bip39@1.2.1(transitive)
- Removed@sindresorhus/is@4.6.0(transitive)
- Removed@szmarczak/http-timer@4.0.6(transitive)
- Removed@types/cacheable-request@6.0.3(transitive)
- Removed@types/http-cache-semantics@4.0.4(transitive)
- Removed@types/keyv@3.1.4(transitive)
- Removed@types/node@22.10.1(transitive)
- Removed@types/responselike@1.0.3(transitive)
- Removedaptos@1.21.0(transitive)
- Removedasynckit@0.4.0(transitive)
- Removedaxios@1.7.4(transitive)
- Removedcacheable-lookup@5.0.4(transitive)
- Removedcacheable-request@7.0.4(transitive)
- Removedclone-response@1.0.3(transitive)
- Removedcombined-stream@1.0.8(transitive)
- Removeddecompress-response@6.0.0(transitive)
- Removeddefer-to-connect@2.0.1(transitive)
- Removeddelayed-stream@1.0.0(transitive)
- Removeddotenv@16.4.5(transitive)
- Removedend-of-stream@1.4.4(transitive)
- Removedeventemitter3@5.0.1(transitive)
- Removedfollow-redirects@1.15.9(transitive)
- Removedform-data@4.0.0(transitive)
- Removedget-stream@5.2.0(transitive)
- Removedgot@11.8.6(transitive)
- Removedhttp-cache-semantics@4.1.1(transitive)
- Removedhttp2-wrapper@1.0.3(transitive)
- Removedjson-buffer@3.0.1(transitive)
- Removedkeyv@4.5.4(transitive)
- Removedlowercase-keys@2.0.0(transitive)
- Removedmime-db@1.52.0(transitive)
- Removedmime-types@2.1.35(transitive)
- Removedmimic-response@1.0.13.1.0(transitive)
- Removednormalize-url@6.1.0(transitive)
- Removedonce@1.4.0(transitive)
- Removedp-cancelable@2.1.1(transitive)
- Removedproxy-from-env@1.1.0(transitive)
- Removedpump@3.0.2(transitive)
- Removedquick-lru@5.1.1(transitive)
- Removedresolve-alpn@1.2.1(transitive)
- Removedresponselike@2.0.1(transitive)
- Removedtweetnacl@1.0.3(transitive)
- Removedundici-types@6.20.0(transitive)
- Removedwrappy@1.0.2(transitive)