@csssr/core-scripts
Advanced tools
+3
-3
| { | ||
| "name": "@csssr/core-scripts", | ||
| "version": "1.0.2", | ||
| "version": "1.0.4", | ||
| "main": "index.js", | ||
@@ -15,3 +15,3 @@ "license": "MIT", | ||
| "fs-extra": "^7.0.1", | ||
| "handlebars": "^4.1.2", | ||
| "handlebars": "^4.3.0", | ||
| "inquirer": "^6.3.1", | ||
@@ -23,3 +23,3 @@ "yargs": "^13.2.2" | ||
| }, | ||
| "gitHead": "293c00cbca148b842b1170bd224610eedef9fef9" | ||
| "gitHead": "d9c8521350f8a45375b257a527b7043da20c76a3" | ||
| } |
New author
Supply chain riskA new npm collaborator published a version of the package for the first time. New collaborators are usually benign additions to a project, but do indicate a change to the security surface area of a package.
Found 1 instance in 1 package
Filesystem access
Supply chain riskAccesses the file system, and could potentially read sensitive data.
Found 1 instance in 1 package
Filesystem access
Supply chain riskAccesses the file system, and could potentially read sensitive data.
Found 1 instance in 1 package
1
Infinity%Updated