fs-plus
Comparing version 0.11.0 to 0.12.0
Missing package tarball
QualityThis package is missing it's tarball. It could be removed from the npm registry or there may have been an error when publishing.
Found 1 instance in 1 package
License Policy Violation
LicenseThis package is not allowed per your license policy. Review the package's license to ensure compliance.
Found 1 instance in 1 package
Git dependency
Supply chain riskContains a dependency which resolves to a remote git URL. Dependencies fetched from git URLs are not immutable can be used to inject untrusted code or reduce the likelihood of a reproducible install.
Found 1 instance in 1 package
Debug access
Supply chain riskUses debug, reflection and dynamic code execution features.
Found 1 instance in 1 package
Environment variable access
Supply chain riskPackage accesses environment variables, which may be a sign of credential stuffing or data theft.
Found 2 instances in 1 package
Filesystem access
Supply chain riskAccesses the file system, and could potentially read sensitive data.
Found 1 instance in 1 package
No contributors or author data
MaintenancePackage does not specify a list of contributors or an author in package.json.
Found 1 instance in 1 package
No v1
QualityPackage is not semver >=1. This means it is not stable and does not support ^ ranges.
Found 1 instance in 1 package
Unmaintained
MaintenancePackage has not been updated in more than 5 years and may be unmaintained. Problems with the package may go unaddressed.
Found 1 instance in 1 package
0
0
0
0
0
0
0
0
0
0
1
0
- Removedasync@~0.2.9
- Removedmkdirp@~0.3.5
- Removedrimraf@~2.2.2
- Removedseason@~0.14.0
- Removedunderscore-plus@~0.5.0
- Removedasync@0.2.10(transitive)
- Removedcoffee-script@1.6.3(transitive)
- Removedmkdirp@0.3.5(transitive)
- Removedoptimist@0.4.0(transitive)
- Removedrimraf@2.2.8(transitive)
- Removedseason@0.14.0(transitive)
- Removedtantamount@0.6.0(transitive)
- Removedunderscore@1.4.41.5.2(transitive)
- Removedunderscore-plus@0.5.0(transitive)
- Removedwordwrap@0.0.3(transitive)