Comparing version 1.3.0 to 1.3.1
{ | ||
"name": "cpx", | ||
"version": "1.3.0", | ||
"version": "1.3.1", | ||
"description": "Copy file globs, watching for changes.", | ||
@@ -10,2 +10,3 @@ "main": "lib/index.js", | ||
"files": [ | ||
"bin", | ||
"lib" | ||
@@ -12,0 +13,0 @@ ], |
License Policy Violation
LicenseThis package is not allowed per your license policy. Review the package's license to ensure compliance.
Found 1 instance in 1 package
Shell access
Supply chain riskThis module accesses the system shell. Accessing the system shell increases the risk of executing arbitrary code.
Found 1 instance in 1 package
Dynamic require
Supply chain riskDynamic require can indicate the package is performing dangerous or unsafe dynamic code execution.
Found 1 instance in 1 package
Environment variable access
Supply chain riskPackage accesses environment variables, which may be a sign of credential stuffing or data theft.
Found 1 instance in 1 package
License Policy Violation
LicenseThis package is not allowed per your license policy. Review the package's license to ensure compliance.
Found 1 instance in 1 package
Major refactor
Supply chain riskPackage has recently undergone a major refactor. It may be unstable or indicate significant internal changes. Use caution when updating to versions that include significant changes.
Found 1 instance in 1 package
41462
12
953
7