flow-parser
Advanced tools
+1
-1
| { | ||
| "name": "flow-parser", | ||
| "version": "0.293.0", | ||
| "version": "0.294.0", | ||
| "description": "JavaScript parser written in OCaml. Produces ESTree AST", | ||
@@ -5,0 +5,0 @@ "homepage": "https://flow.org", |
Sorry, the diff of this file is too big to display
New author
Supply chain riskA new npm collaborator published a version of the package for the first time. New collaborators are usually benign additions to a project, but do indicate a change to the security surface area of a package.
Found 1 instance in 1 package
Dynamic require
Supply chain riskDynamic require can indicate the package is performing dangerous or unsafe dynamic code execution.
Found 1 instance in 1 package
Long strings
Supply chain riskContains long string literals, which may be a sign of obfuscated or packed code.
Found 1 instance in 1 package
Dynamic require
Supply chain riskDynamic require can indicate the package is performing dangerous or unsafe dynamic code execution.
Found 1 instance in 1 package
Long strings
Supply chain riskContains long string literals, which may be a sign of obfuscated or packed code.
Found 1 instance in 1 package
761119
-0.1%12854
-0.26%1
Infinity%