@requestnetwork/data-format
Advanced tools
Comparing version 0.4.7-next.1130 to 0.4.7-next.1134
{ | ||
"name": "@requestnetwork/data-format", | ||
"version": "0.4.7-next.1130+badae337", | ||
"version": "0.4.7-next.1134+d039cac", | ||
"publishConfig": { | ||
@@ -39,4 +39,4 @@ "access": "public" | ||
"lint-staged": "lint-staged", | ||
"test": "nyc mocha --require ts-node/register --require source-map-support/register \"test/**/*.ts\"", | ||
"test:watch": "nyc mocha --watch --watch-extensions json --require ts-node/register --require source-map-support/register \"test/**/*.ts\"" | ||
"test": "nyc mocha --extension ts --require ts-node/register --require source-map-support/register \"test/**/*.ts\"", | ||
"test:watch": "yarn test --watch" | ||
}, | ||
@@ -50,3 +50,3 @@ "dependencies": { | ||
"@types/chai": "4.1.7", | ||
"@types/mocha": "5.2.6", | ||
"@types/mocha": "5.2.7", | ||
"@types/node": "10.12.21", | ||
@@ -61,3 +61,3 @@ "chai": "4.2.0", | ||
"lint-staged": "8.1.3", | ||
"mocha": "5.2.0", | ||
"mocha": "6.2.2", | ||
"nyc": "13.2.0", | ||
@@ -67,6 +67,6 @@ "prettier": "1.16.4", | ||
"shx": "0.3.2", | ||
"ts-node": "8.5.2", | ||
"ts-node": "8.5.4", | ||
"tslint": "5.12.1" | ||
}, | ||
"gitHead": "badae33739872568d31b54bc6b6e225baaa6530d" | ||
"gitHead": "d039cacebeef9827038601378434e89d94d4d4fa" | ||
} |
Empty package
Supply chain riskPackage does not contain any code. It may be removed, is name squatting, or the result of a faulty package publish.
Found 1 instance in 1 package
Major refactor
Supply chain riskPackage has recently undergone a major refactor. It may be unstable or indicate significant internal changes. Use caution when updating to versions that include significant changes.
Found 1 instance in 1 package
Manifest confusion
Supply chain riskThis package has inconsistent metadata. This could be malicious or caused by an error when publishing the package.
Found 1 instance in 1 package
Manifest confusion
Supply chain riskThis package has inconsistent metadata. This could be malicious or caused by an error when publishing the package.
Found 1 instance in 1 package
New author
Supply chain riskA new npm collaborator published a version of the package for the first time. New collaborators are usually benign additions to a project, but do indicate a change to the security surface area of a package.
Found 1 instance in 1 package
Dynamic require
Supply chain riskDynamic require can indicate the package is performing dangerous or unsafe dynamic code execution.
Found 1 instance in 1 package
0
7025
4
0
3