@evidentpoint/readium-glue-modules
Advanced tools
Comparing version 1.2.2 to 1.3.0
{ | ||
"name": "@evidentpoint/readium-glue-modules", | ||
"version": "1.2.2", | ||
"version": "1.3.0", | ||
"files": [ | ||
"lib" | ||
"lib", | ||
"dist" | ||
], | ||
@@ -12,2 +13,5 @@ "main": "lib/callers.js", | ||
}, | ||
"dependencies": { | ||
"readium-cfi-js": "^1.0.0-alpha.1" | ||
}, | ||
"peerDependencies": { | ||
@@ -21,2 +25,5 @@ "@readium/glue-rpc": "^1.3.0" | ||
"rimraf": "^2.6.3", | ||
"rollup": "^1.11.3", | ||
"rollup-plugin-commonjs": "^9.2.2", | ||
"rollup-plugin-node-resolve": "^4.0.1", | ||
"tslint": "^5.14.0", | ||
@@ -31,3 +38,3 @@ "tslint-config-airbnb": "^5.11.1", | ||
"clean": "rimraf lib *.tsbuildinfo", | ||
"build": "tsc", | ||
"build": "tsc && rollup -c", | ||
"dist": "npm run clean && npm run build", | ||
@@ -34,0 +41,0 @@ "prepublishOnly": "npm run lint && npm run dist" |
Major refactor
Supply chain riskPackage has recently undergone a major refactor. It may be unstable or indicate significant internal changes. Use caution when updating to versions that include significant changes.
Found 1 instance in 1 package
Uses eval
Supply chain riskPackage uses dynamic code execution (e.g., eval()), which is a dangerous practice. This can prevent the code from running in certain environments and increases the risk that the code may contain exploits or malicious behavior.
Found 1 instance in 1 package
3102158
93
26854
2
11
3
+ Addedjquery@3.7.1(transitive)
+ Addedlodash-es@4.17.21(transitive)
+ Addedreadium-cfi-js@1.0.0-alpha.1(transitive)