@parcel/utils
Advanced tools
+7
-7
| { | ||
| "name": "@parcel/utils", | ||
| "version": "2.0.0-canary.1819+914335c16", | ||
| "version": "2.0.0-canary.1820+cd2ffa849", | ||
| "description": "Blazing fast, zero configuration web application bundler", | ||
@@ -36,7 +36,7 @@ "license": "MIT", | ||
| "dependencies": { | ||
| "@parcel/codeframe": "2.0.0-canary.1819+914335c16", | ||
| "@parcel/diagnostic": "2.0.0-canary.1819+914335c16", | ||
| "@parcel/logger": "2.0.0-canary.1819+914335c16", | ||
| "@parcel/markdown-ansi": "2.0.0-canary.1819+914335c16", | ||
| "@parcel/rust": "2.14.5-canary.3442+914335c16", | ||
| "@parcel/codeframe": "2.0.0-canary.1820+cd2ffa849", | ||
| "@parcel/diagnostic": "2.0.0-canary.1820+cd2ffa849", | ||
| "@parcel/logger": "2.0.0-canary.1820+cd2ffa849", | ||
| "@parcel/markdown-ansi": "2.0.0-canary.1820+cd2ffa849", | ||
| "@parcel/rust": "2.14.5-canary.3443+cd2ffa849", | ||
| "@parcel/source-map": "^2.1.1", | ||
@@ -70,3 +70,3 @@ "chalk": "^4.1.2", | ||
| }, | ||
| "gitHead": "914335c16417ca54c31cda5875000fd5ea7c26a6" | ||
| "gitHead": "cd2ffa84963e16b3ef5e25144cdefd156ca26761" | ||
| } |
Manifest confusion
Supply chain riskThis package has inconsistent metadata. This could be malicious or caused by an error when publishing the package.
Found 1 instance in 1 package
Network access
Supply chain riskThis module accesses the network.
Found 2 instances in 1 package
Shell access
Supply chain riskThis module accesses the system shell. Accessing the system shell increases the risk of executing arbitrary code.
Found 1 instance in 1 package
Environment variable access
Supply chain riskPackage accesses environment variables, which may be a sign of credential stuffing or data theft.
Found 1 instance in 1 package
Filesystem access
Supply chain riskAccesses the file system, and could potentially read sensitive data.
Found 1 instance in 1 package
Long strings
Supply chain riskContains long string literals, which may be a sign of obfuscated or packed code.
Found 1 instance in 1 package
URL strings
Supply chain riskPackage contains fragments of external URLs or IP addresses, which the package may be accessing at runtime.
Found 1 instance in 1 package
Manifest confusion
Supply chain riskThis package has inconsistent metadata. This could be malicious or caused by an error when publishing the package.
Found 1 instance in 1 package
Network access
Supply chain riskThis module accesses the network.
Found 2 instances in 1 package
Shell access
Supply chain riskThis module accesses the system shell. Accessing the system shell increases the risk of executing arbitrary code.
Found 1 instance in 1 package
Environment variable access
Supply chain riskPackage accesses environment variables, which may be a sign of credential stuffing or data theft.
Found 1 instance in 1 package
Filesystem access
Supply chain riskAccesses the file system, and could potentially read sensitive data.
Found 1 instance in 1 package
Long strings
Supply chain riskContains long string literals, which may be a sign of obfuscated or packed code.
Found 1 instance in 1 package
URL strings
Supply chain riskPackage contains fragments of external URLs or IP addresses, which the package may be accessing at runtime.
Found 1 instance in 1 package