@etomon/bilibili-link-creator
Advanced tools
Comparing version 1.0.1 to 1.0.2
{ | ||
"name": "@etomon/bilibili-link-creator", | ||
"version": "1.0.1", | ||
"version": "1.0.2", | ||
"description": "", | ||
@@ -20,5 +20,5 @@ "main": "index.js", | ||
"cheerio": "^1.0.0-rc.3", | ||
"mimi-downloader": "github:stevenjoezhang/bilibili-downloader#1f5d7076eee7a7853e6c8b174ec327a26978cf16", | ||
"mimi-downloader": "git+https://github.com/stevenjoezhang/bilibili-downloader#1f5d7076eee7a7853e6c8b174ec327a26978cf16", | ||
"node-fetch": "^2.6.1" | ||
} | ||
} |
License Policy Violation
LicenseThis package is not allowed per your license policy. Review the package's license to ensure compliance.
Found 1 instance in 1 package
Git dependency
Supply chain riskContains a dependency which resolves to a remote git URL. Dependencies fetched from git URLs are not immutable can be used to inject untrusted code or reduce the likelihood of a reproducible install.
Found 1 instance in 1 package
Manifest confusion
Supply chain riskThis package has inconsistent metadata. This could be malicious or caused by an error when publishing the package.
Found 1 instance in 1 package
License Policy Violation
LicenseThis package is not allowed per your license policy. Review the package's license to ensure compliance.
Found 1 instance in 1 package
GitHub dependency
Supply chain riskContains a dependency which resolves to a GitHub URL. Dependencies fetched from GitHub specifiers are not immutable can be used to inject untrusted code or reduce the likelihood of a reproducible install.
Found 1 instance in 1 package
39213
3