New Research: Supply Chain Attack on Axios Pulls Malicious Dependency from npm.Details
Socket
Book a DemoSign in
Socket

@jspm/overrides

Package Overview
Dependencies
Maintainers
3
Versions
1
Alerts
File Explorer

Advanced tools

Socket logo

Install Socket

Detect and block malicious and high-risk dependencies

Install

@jspm/overrides

This repo contains the `package.json` overrides used for npm registry packages as processed by `jspm.dev`, `jspm.io` as well as in local package management.

latest
npmnpm
Version
1.0.0
Version published
Maintainers
3
Created
Source

jspm overrides

This repo contains the package.json overrides used for npm registry packages as processed by jspm.dev, jspm.io as well as in local package management.

Do not send PRs to this repo before reading the instructions below.

Criteria for merging an override

  • The override should be fully backwards compatible with existing usage of the package.
  • There should be a link to a PR that was made to the original package repo with the change.
  • The primary repo PR must be stalled with no responsive discussion or activity.

If there are consensus issues on the primary PR, feel free to post an issue here to seek assistance resolving any conflicts. The override is only the last resort for packages that are either not maintained, or where maintainers are unresponsive or actively refusing to merge the feature.

FAQs

Package last updated on 09 Mar 2026

Did you know?

Socket

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Install

Related posts