chartbuilder-ui
Advanced tools
Comparing version
{ | ||
"name": "chartbuilder-ui", | ||
"version": "1.5.5", | ||
"version": "1.5.6", | ||
"description": "React components used in chartbuilder", | ||
@@ -47,3 +47,3 @@ "main": "index.js", | ||
"react-dom": "^0.14.7", | ||
"react-tangle": "https://github.com/Quartz/react-tangle.git" | ||
"react-tangle": "git://github.com/Quartz/react-tangle.git#mb-pages" | ||
}, | ||
@@ -50,0 +50,0 @@ "devDependencies": { |
Git dependency
Supply chain riskContains a dependency which resolves to a remote git URL. Dependencies fetched from git URLs are not immutable and can be used to inject untrusted code or reduce the likelihood of a reproducible install.
Found 1 instance in 1 package
HTTP dependency
Supply chain riskContains a dependency which resolves to a remote HTTP URL which could be used to inject untrusted code and reduce overall package reliability.
Found 1 instance in 1 package
Major refactor
Supply chain riskPackage has recently undergone a major refactor. It may be unstable or indicate significant internal changes. Use caution when updating to versions that include significant changes.
Found 1 instance in 1 package
Manifest confusion
Supply chain riskThis package has inconsistent metadata. This could be malicious or caused by an error when publishing the package.
Found 1 instance in 1 package
741758
00
-100%