@entur/typography
Advanced tools
+3
-3
| { | ||
| "name": "@entur/typography", | ||
| "version": "2.1.1", | ||
| "version": "2.1.2-beta.0", | ||
| "license": "SEE LICENSE IN README.md", | ||
@@ -62,3 +62,3 @@ "main": "./dist/typography.cjs.js", | ||
| "dependencies": { | ||
| "@entur/icons": "^8.4.0", | ||
| "@entur/icons": "^8.4.1-beta.0", | ||
| "@entur/tokens": "^3.21.1", | ||
@@ -85,3 +85,3 @@ "@entur/utils": "^0.13.1", | ||
| }, | ||
| "gitHead": "fc1996af692ebbe6c00454abf846cf61e0fe6231" | ||
| "gitHead": "bb439f99d29ac82cfa40794f882839e0c6162f8a" | ||
| } |
Environment variable access
Supply chain riskPackage accesses environment variables, which may be a sign of credential stuffing or data theft.
Found 1 instance in 1 package
Filesystem access
Supply chain riskAccesses the file system, and could potentially read sensitive data.
Found 1 instance in 1 package
Long strings
Supply chain riskContains long string literals, which may be a sign of obfuscated or packed code.
Found 1 instance in 1 package
No v1
QualityPackage is not semver >=1. This means it is not stable and does not support ^ ranges.
Found 1 instance in 1 package
Unidentified License
LicenseSomething that seems like a license was found, but its contents could not be matched with a known license.
Found 1 instance in 1 package
Environment variable access
Supply chain riskPackage accesses environment variables, which may be a sign of credential stuffing or data theft.
Found 1 instance in 1 package
Filesystem access
Supply chain riskAccesses the file system, and could potentially read sensitive data.
Found 1 instance in 1 package
Long strings
Supply chain riskContains long string literals, which may be a sign of obfuscated or packed code.
Found 1 instance in 1 package
Unidentified License
LicenseSomething that seems like a license was found, but its contents could not be matched with a known license.
Found 1 instance in 1 package
3999408
02
100%Updated