@gltf-transform/core
Advanced tools
Comparing version 0.0.6 to 0.0.7
{ | ||
"name": "@gltf-transform/core", | ||
"version": "0.0.6", | ||
"version": "0.0.7", | ||
"repository": "github:donmccurdy/glTF-Transform", | ||
@@ -20,3 +20,10 @@ "description": "JavaScript and TypeScript utilities for processing glTF 3D models", | ||
"author": "Don McCurdy <dm@donmccurdy.com>", | ||
"license": "MIT" | ||
"license": "MIT", | ||
"files": [ | ||
"dist/", | ||
"src/", | ||
"README.md", | ||
"package.json", | ||
"package-lock.json" | ||
] | ||
} |
@@ -12,3 +12,3 @@ # glTF-Transform-Util | ||
> This module is part of the glTF-Transform project, where you can create PRs and | ||
> This module is part of the [glTF-Transform project](https://github.com/donmccurdy/glTF-Transform), where you can create PRs and | ||
issues. | ||
@@ -15,0 +15,0 @@ |
License Policy Violation
LicenseThis package is not allowed per your license policy. Review the package's license to ensure compliance.
Found 1 instance in 1 package
License Policy Violation
LicenseThis package is not allowed per your license policy. Review the package's license to ensure compliance.
Found 1 instance in 1 package
Native code
Supply chain riskContains native code (e.g., compiled binaries or shared libraries). Including native code can obscure malicious behavior.
Found 7 instances in 1 package
Environment variable access
Supply chain riskPackage accesses environment variables, which may be a sign of credential stuffing or data theft.
Found 1 instance in 1 package
Filesystem access
Supply chain riskAccesses the file system, and could potentially read sensitive data.
Found 1 instance in 1 package
1
9
143090
22352
22
3411