@guardian/src-grid
Advanced tools
+4
-4
| { | ||
| "name": "@guardian/src-grid", | ||
| "version": "2.8.0-rc.0", | ||
| "version": "2.8.0", | ||
| "license": "Apache-2.0", | ||
@@ -29,3 +29,3 @@ "main": "dist/grid.js", | ||
| "@emotion/babel-preset-css-prop": "^10.0.14", | ||
| "@guardian/src-foundations": "^2.8.0-rc.0", | ||
| "@guardian/src-foundations": "^2.8.0", | ||
| "rollup": "^1.17.0", | ||
@@ -46,8 +46,8 @@ "rollup-plugin-babel": "^4.3.3", | ||
| "@emotion/core": "^10.0.14", | ||
| "@guardian/src-foundations": "^2.8.0-rc.0", | ||
| "@guardian/src-foundations": "^2.8.0", | ||
| "react": "^16.8.6" | ||
| }, | ||
| "dependencies": { | ||
| "@guardian/src-helpers": "^2.8.0-rc.0" | ||
| "@guardian/src-helpers": "^2.8.0" | ||
| } | ||
| } |
Environment variable access
Supply chain riskPackage accesses environment variables, which may be a sign of credential stuffing or data theft.
Found 1 instance in 1 package
Long strings
Supply chain riskContains long string literals, which may be a sign of obfuscated or packed code.
Found 1 instance in 1 package
Environment variable access
Supply chain riskPackage accesses environment variables, which may be a sign of credential stuffing or data theft.
Found 1 instance in 1 package
Long strings
Supply chain riskContains long string literals, which may be a sign of obfuscated or packed code.
Found 1 instance in 1 package
No v1
QualityPackage is not semver >=1. This means it is not stable and does not support ^ ranges.
Found 1 instance in 1 package
1
-50%103305
-0.02%Updated