@behance/lightbox
Advanced tools
Comparing version 9.1.0 to 9.1.1
{ | ||
"name": "@behance/lightbox", | ||
"version": "9.1.0", | ||
"version": "9.1.1", | ||
"description": "Image lightbox", | ||
@@ -24,3 +24,3 @@ "main": "src", | ||
"hoverintent": "^1.0.3", | ||
"idle-timer": "git+https://github.com/nemtsov/idle-timer#8fc0007", | ||
"idle-timer": "^1.2.0", | ||
"jquery": "~2.1.1", | ||
@@ -27,0 +27,0 @@ "tinycolor2": "^1.4.1", |
@@ -1,2 +0,2 @@ | ||
# Lightbox [![Build Status](https://img.shields.io/travis/behance/lightbox.svg)](http://travis-ci.org/behance/lightbox) | ||
# Lightbox [![Build Status](https://img.shields.io/travis/behance/lightbox.svg)](http://travis-ci.org/behance/lightbox) [![npm](https://img.shields.io/npm/v/@behance/lightbox.svg)](https://www.npmjs.com/package/@behance/lightbox) | ||
@@ -3,0 +3,0 @@ A component, which opens an image or a set of images in their own scrollable view with the goal of removing distractions from the page. |
License Policy Violation
LicenseThis package is not allowed per your license policy. Review the package's license to ensure compliance.
Found 1 instance in 1 package
New author
Supply chain riskA new npm collaborator published a version of the package for the first time. New collaborators are usually benign additions to a project, but do indicate a change to the security surface area of a package.
Found 1 instance in 1 package
License Policy Violation
LicenseThis package is not allowed per your license policy. Review the package's license to ensure compliance.
Found 1 instance in 1 package
Git dependency
Supply chain riskContains a dependency which resolves to a remote git URL. Dependencies fetched from git URLs are not immutable and can be used to inject untrusted code or reduce the likelihood of a reproducible install.
Found 1 instance in 1 package
Manifest confusion
Supply chain riskThis package has inconsistent metadata. This could be malicious or caused by an error when publishing the package.
Found 1 instance in 1 package
0
39662
19
416
+ Addedidle-timer@1.2.0(transitive)
Updatedidle-timer@^1.2.0