@pnpm/crypto.hash
Advanced tools
+1
-1
| The MIT License (MIT) | ||
| Copyright (c) 2015-2016 Rico Sta. Cruz and other contributors | ||
| Copyright (c) 2016-2025 Zoltan Kochan and other contributors | ||
| Copyright (c) 2016-2026 Zoltan Kochan and other contributors | ||
@@ -6,0 +6,0 @@ Permission is hereby granted, free of charge, to any person obtaining a copy |
+6
-6
| { | ||
| "name": "@pnpm/crypto.hash", | ||
| "version": "1000.2.1", | ||
| "version": "1000.2.2", | ||
| "description": "Generate hashes", | ||
@@ -13,4 +13,4 @@ "keywords": [ | ||
| "funding": "https://opencollective.com/pnpm", | ||
| "repository": "https://github.com/pnpm/pnpm/blob/main/crypto/hash", | ||
| "homepage": "https://github.com/pnpm/pnpm/blob/main/crypto/hash#readme", | ||
| "repository": "https://github.com/pnpm/pnpm/tree/main/crypto/hash", | ||
| "homepage": "https://github.com/pnpm/pnpm/tree/main/crypto/hash#readme", | ||
| "bugs": { | ||
@@ -32,3 +32,3 @@ "url": "https://github.com/pnpm/pnpm/issues" | ||
| "@pnpm/crypto.polyfill": "1000.1.0", | ||
| "@pnpm/graceful-fs": "1000.0.1" | ||
| "@pnpm/graceful-fs": "1000.1.0" | ||
| }, | ||
@@ -39,4 +39,4 @@ "devDependencies": { | ||
| "tar-stream": "^2.2.0", | ||
| "@pnpm/prepare": "1000.0.3", | ||
| "@pnpm/crypto.hash": "1000.2.1" | ||
| "@pnpm/crypto.hash": "1000.2.2", | ||
| "@pnpm/prepare": "1000.0.15" | ||
| }, | ||
@@ -43,0 +43,0 @@ "engines": { |
Filesystem access
Supply chain riskAccesses the file system, and could potentially read sensitive data.
Found 1 instance in 1 package
No repository
Supply chain riskPackage does not have a linked source code repository. Without this field, a package will have no reference to the location of the source code use to generate the package.
Found 1 instance in 1 package
New author
Supply chain riskA new npm collaborator published a version of the package for the first time. New collaborators are usually benign additions to a project, but do indicate a change to the security surface area of a package.
Found 1 instance in 1 package
Filesystem access
Supply chain riskAccesses the file system, and could potentially read sensitive data.
Found 1 instance in 1 package
No repository
Supply chain riskPackage does not have a linked source code repository. Without this field, a package will have no reference to the location of the source code use to generate the package.
Found 1 instance in 1 package
7297
0.01%0
-100%+ Added
- Removed
Updated