Comparing version 0.5.5 to 0.5.6
{ | ||
"name": "clam", | ||
"version": "0.5.5", | ||
"version": "0.5.6", | ||
"description": "A full Web front end develop envirment.", | ||
@@ -25,3 +25,3 @@ "main": "index.js", | ||
"send":"0.1.0", | ||
"civet":"1.2.0" | ||
"civet":"git://github.com/xudafeng/civet.git" | ||
}, | ||
@@ -28,0 +28,0 @@ "devDependencies": {}, |
Git dependency
Supply chain riskContains a dependency which resolves to a remote git URL. Dependencies fetched from git URLs are not immutable and can be used to inject untrusted code or reduce the likelihood of a reproducible install.
Found 1 instance in 1 package
330560
1