Comparing version 1.0.0 to 1.0.2
{ | ||
"name": "glab", | ||
"version": "1.0.0", | ||
"description": "", | ||
"main": "index.js", | ||
"version": "1.0.2", | ||
"description": "api abstraction package for gitlab", | ||
"main": "dist/index.js", | ||
"typings": "dist/index.d.ts", | ||
"author": "Lossless GmbH", | ||
"license": "MIT", | ||
"scripts": { | ||
"test": "echo \"Error: no test specified\" && exit 1" | ||
"test": "(npmts)" | ||
}, | ||
"author": "", | ||
"license": "ISC" | ||
"devDependencies": { | ||
"tapbundle": "^1.0.13" | ||
}, | ||
"dependencies": { | ||
"typings-global": "^1.0.16" | ||
} | ||
} |
New author
Supply chain riskA new npm collaborator published a version of the package for the first time. New collaborators are usually benign additions to a project, but do indicate a change to the security surface area of a package.
Found 1 instance in 1 package
Empty package
Supply chain riskPackage does not contain any code. It may be removed, is name squatting, or the result of a faulty package publish.
Found 1 instance in 1 package
No contributors or author data
MaintenancePackage does not specify a list of contributors or an author in package.json.
Found 1 instance in 1 package
No tests
QualityPackage does not have any tests. This is a strong signal of a poorly maintained or low quality package.
Found 1 instance in 1 package
13194
16
39
2
1
1
1
+ Addedtypings-global@^1.0.16
+ Addedtypings-global@1.0.28(transitive)