@invisionag/iris-react-animation
Advanced tools
Comparing version 1.0.3 to 1.0.4
{ | ||
"name": "@invisionag/iris-react-animation", | ||
"version": "1.0.3", | ||
"version": "1.0.4", | ||
"main": "dist/index.js", | ||
@@ -16,11 +16,11 @@ "license": "MIT", | ||
"dependencies": { | ||
"@invisionag/iris-react-image-container": "^1.0.3", | ||
"@invisionag/iris-settings": "^4.2.0", | ||
"@invisionag/iris-tools": "^3.0.10", | ||
"@invisionag/iris-react-image-container": "^1.0.4", | ||
"@invisionag/iris-settings": "^4.2.1", | ||
"@invisionag/iris-tools": "^3.0.11", | ||
"classnames": "^2.2.5", | ||
"lottie-web": "^5.1.13" | ||
"lottie-web": "^5.1.15" | ||
}, | ||
"devDependencies": { | ||
"@invisionag/iris-colors": "^3.0.3", | ||
"webpack": "^3.11.0" | ||
"webpack": "^4.8.3" | ||
}, | ||
@@ -27,0 +27,0 @@ "peerDependencies": { |
Major refactor
Supply chain riskPackage has recently undergone a major refactor. It may be unstable or indicate significant internal changes. Use caution when updating to versions that include significant changes.
Found 1 instance in 1 package
New author
Supply chain riskA new npm collaborator published a version of the package for the first time. New collaborators are usually benign additions to a project, but do indicate a change to the security surface area of a package.
Found 1 instance in 1 package
Uses eval
Supply chain riskPackage uses dynamic code execution (e.g., eval()), which is a dangerous practice. This can prevent the code from running in certain environments and increases the risk that the code may contain exploits or malicious behavior.
Found 1 instance in 1 package
Long strings
Supply chain riskContains long string literals, which may be a sign of obfuscated or packed code.
Found 1 instance in 1 package
19591
242
2
8