Comparing version 4.2.1 to 4.3.0
{ | ||
"name": "download", | ||
"version": "4.2.1", | ||
"version": "4.3.0", | ||
"description": "Download and extract files", | ||
@@ -41,4 +41,4 @@ "license": "MIT", | ||
"stream-combiner2": "^1.0.2", | ||
"vinyl": "^0.5.3", | ||
"vinyl-fs": "^1.0.0", | ||
"vinyl": "^1.0.0", | ||
"vinyl-fs": "^2.2.0", | ||
"ware": "^1.2.0" | ||
@@ -45,0 +45,0 @@ }, |
License Policy Violation
LicenseThis package is not allowed per your license policy. Review the package's license to ensure compliance.
Found 1 instance in 1 package
License Policy Violation
LicenseThis package is not allowed per your license policy. Review the package's license to ensure compliance.
Found 1 instance in 1 package
New author
Supply chain riskA new npm collaborator published a version of the package for the first time. New collaborators are usually benign additions to a project, but do indicate a change to the security surface area of a package.
Found 1 instance in 1 package
0
- Removedfind-index@0.1.1(transitive)
- Removedgaze@0.5.2(transitive)
- Removedglob@3.1.214.5.3(transitive)
- Removedglob-stream@4.1.1(transitive)
- Removedglob-watcher@0.0.8(transitive)
- Removedglob2base@0.0.12(transitive)
- Removedglobule@0.1.0(transitive)
- Removedgraceful-fs@1.2.33.0.12(transitive)
- Removedinherits@1.0.2(transitive)
- Removedlodash@1.0.2(transitive)
- Removedlru-cache@2.7.3(transitive)
- Removedmerge-stream@0.1.8(transitive)
- Removedminimatch@0.2.142.0.10(transitive)
- Removednatives@1.1.6(transitive)
- Removedordered-read-streams@0.1.0(transitive)
- Removedsigmund@1.0.1(transitive)
- Removedstrip-bom@1.0.0(transitive)
- Removedvinyl-fs@1.0.0(transitive)
Updatedvinyl@^1.0.0
Updatedvinyl-fs@^2.2.0