@uniformdev/cli
Advanced tools
+9
-9
| { | ||
| "name": "@uniformdev/cli", | ||
| "version": "20.50.2-alpha.1+8798ffc32d", | ||
| "version": "20.50.2-alpha.2+5f918e9716", | ||
| "description": "Uniform command line interface tool", | ||
@@ -31,9 +31,9 @@ "license": "SEE LICENSE IN LICENSE.txt", | ||
| "@thi.ng/mime": "^2.2.23", | ||
| "@uniformdev/assets": "20.50.2-alpha.1+8798ffc32d", | ||
| "@uniformdev/canvas": "20.50.2-alpha.1+8798ffc32d", | ||
| "@uniformdev/context": "20.50.2-alpha.1+8798ffc32d", | ||
| "@uniformdev/files": "20.50.2-alpha.1+8798ffc32d", | ||
| "@uniformdev/project-map": "20.50.2-alpha.1+8798ffc32d", | ||
| "@uniformdev/redirect": "20.50.2-alpha.1+8798ffc32d", | ||
| "@uniformdev/richtext": "20.50.2-alpha.1+8798ffc32d", | ||
| "@uniformdev/assets": "20.50.2-alpha.2+5f918e9716", | ||
| "@uniformdev/canvas": "20.50.2-alpha.2+5f918e9716", | ||
| "@uniformdev/context": "20.50.2-alpha.2+5f918e9716", | ||
| "@uniformdev/files": "20.50.2-alpha.2+5f918e9716", | ||
| "@uniformdev/project-map": "20.50.2-alpha.2+5f918e9716", | ||
| "@uniformdev/redirect": "20.50.2-alpha.2+5f918e9716", | ||
| "@uniformdev/richtext": "20.50.2-alpha.2+5f918e9716", | ||
| "call-bind": "^1.0.2", | ||
@@ -85,3 +85,3 @@ "colorette": "2.0.20", | ||
| }, | ||
| "gitHead": "8798ffc32d405a5d357628861a40cd964e3ea6f0" | ||
| "gitHead": "5f918e9716a4e8b9af3bfefa881a5a569e54b279" | ||
| } |
Manifest confusion
Supply chain riskThis package has inconsistent metadata. This could be malicious or caused by an error when publishing the package.
Found 1 instance in 1 package
Network access
Supply chain riskThis module accesses the network.
Found 3 instances in 1 package
Environment variable access
Supply chain riskPackage accesses environment variables, which may be a sign of credential stuffing or data theft.
Found 25 instances in 1 package
Filesystem access
Supply chain riskAccesses the file system, and could potentially read sensitive data.
Found 3 instances in 1 package
Long strings
Supply chain riskContains long string literals, which may be a sign of obfuscated or packed code.
Found 1 instance in 1 package
Manifest confusion
Supply chain riskThis package has inconsistent metadata. This could be malicious or caused by an error when publishing the package.
Found 1 instance in 1 package
Network access
Supply chain riskThis module accesses the network.
Found 3 instances in 1 package
Environment variable access
Supply chain riskPackage accesses environment variables, which may be a sign of credential stuffing or data theft.
Found 25 instances in 1 package
Filesystem access
Supply chain riskAccesses the file system, and could potentially read sensitive data.
Found 3 instances in 1 package
Long strings
Supply chain riskContains long string literals, which may be a sign of obfuscated or packed code.
Found 1 instance in 1 package