check-deps-versions
Advanced tools
Comparing version 0.2.2 to 1.0.0
{ | ||
"name": "check-deps-versions", | ||
"version": "0.2.2", | ||
"description": "Check if dependencies specified in package.json are up to date with the latest available versions.", | ||
"version": "1.0.0", | ||
"description": "", | ||
"main": "index.js", | ||
"scripts": { | ||
"test": "echo \"Error: no test specified\" && exit 1" | ||
}, | ||
"repository": { | ||
"type": "git", | ||
"url": "https://github.com/moroshko/check-deps-versions.git" | ||
"url": "git+https://github.com/npm/deprecate-holder.git" | ||
}, | ||
"author": "Misha Moroshko <michael.moroshko@gmail.com>", | ||
"scripts": { | ||
"lint": "eslint index.js", | ||
"build": "npm run lint", | ||
"preversion": "npm run build", | ||
"postversion": "git push && git push --tags" | ||
"author": "", | ||
"license": "ISC", | ||
"bugs": { | ||
"url": "https://github.com/npm/deprecate-holder/issues" | ||
}, | ||
"bin": { | ||
"deps": "./bin/deps" | ||
}, | ||
"dependencies": { | ||
"chalk": "^1.1.3", | ||
"file-exists": "^2.0.0", | ||
"find-nearest-file": "^1.0.0", | ||
"lodash.sortby": "^4.7.0", | ||
"minimist": "^1.2.0", | ||
"package-json": "^2.4.0", | ||
"semver": "^5.3.0", | ||
"strip-ansi": "^3.0.1", | ||
"text-table": "^0.2.0" | ||
}, | ||
"devDependencies": { | ||
"eslint": "^3.7.1" | ||
}, | ||
"files": [ | ||
"index.js", | ||
"bin" | ||
], | ||
"keywords": [ | ||
"dependency", | ||
"dependencies", | ||
"devDependencies", | ||
"version", | ||
"versions", | ||
"pkg", | ||
"package", | ||
"packages", | ||
"package.json", | ||
"npm", | ||
"check", | ||
"compare", | ||
"outdated", | ||
"latest" | ||
], | ||
"license": "MIT" | ||
"homepage": "https://github.com/npm/deprecate-holder#readme" | ||
} |
@@ -1,1 +0,5 @@ | ||
# Coming soon... | ||
# Deprecated Package | ||
This package is no longer supported and has been deprecated. To avoid malicious use, npm is hanging on to the package name. | ||
Please contact support@npmjs.com if you have questions about this package. |
Empty package
Supply chain riskPackage does not contain any code. It may be removed, is name squatting, or the result of a faulty package publish.
Found 1 instance in 1 package
New author
Supply chain riskA new npm collaborator published a version of the package for the first time. New collaborators are usually benign additions to a project, but do indicate a change to the security surface area of a package.
Found 1 instance in 1 package
No contributors or author data
MaintenancePackage does not specify a list of contributors or an author in package.json.
Found 1 instance in 1 package
No tests
QualityPackage does not have any tests. This is a strong signal of a poorly maintained or low quality package.
Found 1 instance in 1 package
Filesystem access
Supply chain riskAccesses the file system, and could potentially read sensitive data.
Found 1 instance in 1 package
No bug tracker
MaintenancePackage does not have a linked bug tracker in package.json.
Found 1 instance in 1 package
No v1
QualityPackage is not semver >=1. This means it is not stable and does not support ^ ranges.
Found 1 instance in 1 package
No website
QualityPackage does not have a website.
Found 1 instance in 1 package
0
0
1
6
0
681
2
0
2
- Removedchalk@^1.1.3
- Removedfile-exists@^2.0.0
- Removedfind-nearest-file@^1.0.0
- Removedlodash.sortby@^4.7.0
- Removedminimist@^1.2.0
- Removedpackage-json@^2.4.0
- Removedsemver@^5.3.0
- Removedstrip-ansi@^3.0.1
- Removedtext-table@^0.2.0
- Removedansi-regex@2.1.1(transitive)
- Removedansi-styles@2.2.1(transitive)
- Removedcapture-stack-trace@1.0.2(transitive)
- Removedchalk@1.1.3(transitive)
- Removedcore-util-is@1.0.3(transitive)
- Removedcreate-error-class@3.0.2(transitive)
- Removeddeep-extend@0.6.0(transitive)
- Removedduplexer2@0.1.4(transitive)
- Removederror-ex@1.3.2(transitive)
- Removedescape-string-regexp@1.0.5(transitive)
- Removedfile-exists@2.0.0(transitive)
- Removedfind-nearest-file@1.1.0(transitive)
- Removedgot@5.7.1(transitive)
- Removedhas-ansi@2.0.0(transitive)
- Removedinherits@2.0.4(transitive)
- Removedini@1.3.8(transitive)
- Removedis-arrayish@0.2.1(transitive)
- Removedis-redirect@1.0.0(transitive)
- Removedis-retry-allowed@1.2.0(transitive)
- Removedis-stream@1.1.0(transitive)
- Removedisarray@1.0.0(transitive)
- Removedlodash.sortby@4.7.0(transitive)
- Removedlowercase-keys@1.0.1(transitive)
- Removedminimist@1.2.8(transitive)
- Removednode-status-codes@1.0.0(transitive)
- Removedobject-assign@4.1.1(transitive)
- Removedpackage-json@2.4.0(transitive)
- Removedparse-json@2.2.0(transitive)
- Removedpinkie@2.0.4(transitive)
- Removedpinkie-promise@2.0.1(transitive)
- Removedprepend-http@1.0.4(transitive)
- Removedprocess-nextick-args@2.0.1(transitive)
- Removedrc@1.2.8(transitive)
- Removedread-all-stream@3.1.0(transitive)
- Removedreadable-stream@2.3.8(transitive)
- Removedregistry-auth-token@3.4.0(transitive)
- Removedregistry-url@3.1.0(transitive)
- Removedsafe-buffer@5.1.2(transitive)
- Removedsemver@5.7.2(transitive)
- Removedstring_decoder@1.1.1(transitive)
- Removedstrip-ansi@3.0.1(transitive)
- Removedstrip-json-comments@2.0.1(transitive)
- Removedsupports-color@2.0.0(transitive)
- Removedtext-table@0.2.0(transitive)
- Removedtimed-out@3.1.3(transitive)
- Removedunzip-response@1.0.2(transitive)
- Removedurl-parse-lax@1.0.0(transitive)
- Removedutil-deprecate@1.0.2(transitive)