@docker/sdk
Advanced tools
+2
-2
| { | ||
| "version": "0.1.23", | ||
| "version": "1.0.0", | ||
| "license": "Apache-2.0", | ||
@@ -52,3 +52,3 @@ "main": "index.js", | ||
| "@grpc/grpc-js": "^1.0.5", | ||
| "google-auth-library": "^6.0.6", | ||
| "google-auth-library": "^6.1.3", | ||
| "google-protobuf": "^3.12.2", | ||
@@ -55,0 +55,0 @@ "tslib": "^2.0.0" |
Uses eval
Supply chain riskPackage uses dynamic code execution (e.g., eval()), which is a dangerous practice. This can prevent the code from running in certain environments and increases the risk that the code may contain exploits or malicious behavior.
Found 1 instance in 1 package
Long strings
Supply chain riskContains long string literals, which may be a sign of obfuscated or packed code.
Found 1 instance in 1 package
Uses eval
Supply chain riskPackage uses dynamic code execution (e.g., eval()), which is a dangerous practice. This can prevent the code from running in certain environments and increases the risk that the code may contain exploits or malicious behavior.
Found 1 instance in 1 package
Long strings
Supply chain riskContains long string literals, which may be a sign of obfuscated or packed code.
Found 1 instance in 1 package
No v1
QualityPackage is not semver >=1. This means it is not stable and does not support ^ ranges.
Found 1 instance in 1 package
1
-50%414096
0Updated