gatsby-admin
Advanced tools
Comparing version 0.1.94 to 0.1.95-telemetry-test.17
{ | ||
"name": "gatsby-admin", | ||
"version": "0.1.94", | ||
"version": "0.1.95-telemetry-test.17+1bc19c14e", | ||
"main": "index.js", | ||
@@ -20,6 +20,6 @@ "author": "Max Stoiber", | ||
"formik": "^2.1.4", | ||
"gatsby": "^2.24.5", | ||
"gatsby": "2.24.6-telemetry-test.17+1bc19c14e", | ||
"gatsby-interface": "0.0.173", | ||
"gatsby-plugin-typescript": "^2.4.15", | ||
"gatsby-source-graphql": "^2.6.2", | ||
"gatsby-plugin-typescript": "2.4.15", | ||
"gatsby-source-graphql": "2.6.2", | ||
"ncp": "^2.0.0", | ||
@@ -44,3 +44,3 @@ "nodemon": "^2.0.4", | ||
}, | ||
"gitHead": "44e86fa027929929a334b711aa2b6e554e0306f0" | ||
"gitHead": "1bc19c14e168432951f1b8aad939adc37fb0be44" | ||
} |
License Policy Violation
LicenseThis package is not allowed per your license policy. Review the package's license to ensure compliance.
Found 1 instance in 1 package
Major refactor
Supply chain riskPackage has recently undergone a major refactor. It may be unstable or indicate significant internal changes. Use caution when updating to versions that include significant changes.
Found 1 instance in 1 package
Manifest confusion
Supply chain riskThis package has inconsistent metadata. This could be malicious or caused by an error when publishing the package.
Found 1 instance in 1 package
License Policy Violation
LicenseThis package is not allowed per your license policy. Review the package's license to ensure compliance.
Found 1 instance in 1 package
Native code
Supply chain riskContains native code (e.g., compiled binaries or shared libraries). Including native code can obscure malicious behavior.
Found 453 instances in 1 package
Major refactor
Supply chain riskPackage has recently undergone a major refactor. It may be unstable or indicate significant internal changes. Use caution when updating to versions that include significant changes.
Found 1 instance in 1 package
Network access
Supply chain riskThis module accesses the network.
Found 1 instance in 1 package
Dynamic require
Supply chain riskDynamic require can indicate the package is performing dangerous or unsafe dynamic code execution.
Found 1 instance in 1 package
Environment variable access
Supply chain riskPackage accesses environment variables, which may be a sign of credential stuffing or data theft.
Found 4 instances in 1 package
Filesystem access
Supply chain riskAccesses the file system, and could potentially read sensitive data.
Found 1 instance in 1 package
0
2
31671
14
369