Comparing version 1.3.1 to 1.3.2
{ | ||
"name": "codepage", | ||
"version": "1.3.1", | ||
"version": "1.3.2", | ||
"author": "SheetJS", | ||
@@ -10,2 +10,10 @@ "description": "pure-JS library to handle codepages", | ||
}, | ||
"files": [ | ||
"LICENSE", | ||
"README.md", | ||
"bin", | ||
"cptable.js", | ||
"cputils.js", | ||
"dist/cpexcel.full.js" | ||
], | ||
"main": "cputils.js", | ||
@@ -12,0 +20,0 @@ "dependencies": { |
License Policy Violation
LicenseThis package is not allowed per your license policy. Review the package's license to ensure compliance.
Found 1 instance in 1 package
License Policy Violation
LicenseThis package is not allowed per your license policy. Review the package's license to ensure compliance.
Found 1 instance in 1 package
Native code
Supply chain riskContains native code (e.g., compiled binaries or shared libraries). Including native code can obscure malicious behavior.
Found 12 instances in 1 package
Debug access
Supply chain riskUses debug, reflection and dynamic code execution features.
Found 1 instance in 1 package
Dynamic require
Supply chain riskDynamic require can indicate the package is performing dangerous or unsafe dynamic code execution.
Found 1 instance in 1 package
Environment variable access
Supply chain riskPackage accesses environment variables, which may be a sign of credential stuffing or data theft.
Found 1 instance in 1 package
Filesystem access
Supply chain riskAccesses the file system, and could potentially read sensitive data.
Found 1 instance in 1 package
High entropy strings
Supply chain riskContains high entropy strings. This could be a sign of encrypted data, leaked secrets or obfuscated code.
Found 1 instance in 1 package
17
0
6236901
10
34821