@pnpm/crypto.hash
Advanced tools
+5
-4
| { | ||
| "name": "@pnpm/crypto.hash", | ||
| "version": "1000.2.0", | ||
| "version": "1000.2.1", | ||
| "description": "Generate hashes", | ||
@@ -18,2 +18,3 @@ "keywords": [ | ||
| }, | ||
| "type": "commonjs", | ||
| "main": "lib/index.js", | ||
@@ -31,3 +32,3 @@ "types": "lib/index.d.ts", | ||
| "@pnpm/crypto.polyfill": "1000.1.0", | ||
| "@pnpm/graceful-fs": "1000.0.0" | ||
| "@pnpm/graceful-fs": "1000.0.1" | ||
| }, | ||
@@ -38,4 +39,4 @@ "devDependencies": { | ||
| "tar-stream": "^2.2.0", | ||
| "@pnpm/crypto.hash": "1000.2.0", | ||
| "@pnpm/prepare": "0.0.121" | ||
| "@pnpm/prepare": "1000.0.3", | ||
| "@pnpm/crypto.hash": "1000.2.1" | ||
| }, | ||
@@ -42,0 +43,0 @@ "engines": { |
New author
Supply chain riskA new npm collaborator published a version of the package for the first time. New collaborators are usually benign additions to a project, but do indicate a change to the security surface area of a package.
Found 1 instance in 1 package
Filesystem access
Supply chain riskAccesses the file system, and could potentially read sensitive data.
Found 1 instance in 1 package
Filesystem access
Supply chain riskAccesses the file system, and could potentially read sensitive data.
Found 1 instance in 1 package
7296
0.32%1
Infinity%+ Added
- Removed
Updated