abp-stage
Advanced tools
Comparing version 0.0.40 to 1.0.0
{ | ||
"name": "abp-stage", | ||
"version": "0.0.40", | ||
"version": "1.0.0", | ||
"description": "A app builder plugin for Vue.js.", | ||
@@ -16,4 +16,5 @@ "keywords": [ | ||
"h5-utils": "^0.4.3", | ||
"sns-sdk": "git+ssh://git@github.com/eleme/sns-sdk#1.0.0-rc.1", | ||
"ux-component": "git+ssh://git@github.com/eleme/ux-component#1.2.0" | ||
"sns-sdk": "git+ssh://git@github.com/eleme/sns-sdk#1.0.0-rc.6", | ||
"ux-component": "git+ssh://git@github.com/eleme/ux-component#1.2.0", | ||
"vue-aria": "git+ssh://git@github.com/eleme/vue-aria#0.0.2" | ||
}, | ||
@@ -20,0 +21,0 @@ "devDependencies": { |
Sorry, the diff of this file is too big to display
Git dependency
Supply chain riskContains a dependency which resolves to a remote git URL. Dependencies fetched from git URLs are not immutable and can be used to inject untrusted code or reduce the likelihood of a reproducible install.
Found 2 instances in 1 package
Manifest confusion
Supply chain riskThis package has inconsistent metadata. This could be malicious or caused by an error when publishing the package.
Found 2 instances in 1 package
Git dependency
Supply chain riskContains a dependency which resolves to a remote git URL. Dependencies fetched from git URLs are not immutable and can be used to inject untrusted code or reduce the likelihood of a reproducible install.
Found 1 instance in 1 package
Manifest confusion
Supply chain riskThis package has inconsistent metadata. This could be malicious or caused by an error when publishing the package.
Found 1 instance in 1 package
No v1
QualityPackage is not semver >=1. This means it is not stable and does not support ^ ranges.
Found 1 instance in 1 package
243855
1
6
5
7