Comparing version 0.3.2 to 0.3.3
@@ -14,6 +14,6 @@ { | ||
}, | ||
"version": "0.3.2", | ||
"version": "0.3.3", | ||
"main": "./index.js", | ||
"dependencies": { | ||
"async-json": "git://github.com/tim-kos/async-json.git#4aab59ee4d842fcfe8958a10f128566a9c1f14a4", | ||
"async-json": "git://github.com/tim-kos/async-json.git#a1baed80dab93c0d7f1fa8ae2620f70ff82a24bb", | ||
"resumer": "0.0.0", | ||
@@ -20,0 +20,0 @@ "event-stream": "3.3.0", |
Git dependency
Supply chain riskContains a dependency which resolves to a remote git URL. Dependencies fetched from git URLs are not immutable and can be used to inject untrusted code or reduce the likelihood of a reproducible install.
Found 1 instance in 1 package
Git dependency
Supply chain riskContains a dependency which resolves to a remote git URL. Dependencies fetched from git URLs are not immutable and can be used to inject untrusted code or reduce the likelihood of a reproducible install.
Found 1 instance in 1 package
Major refactor
Supply chain riskPackage has recently undergone a major refactor. It may be unstable or indicate significant internal changes. Use caution when updating to versions that include significant changes.
Found 1 instance in 1 package
0