homebridge-xiaomi-yeelight
Advanced tools
Comparing version 1.0.0 to 1.0.1
{ | ||
"displayName": "Xiaomi Yeelight Support", | ||
"name": "homebridge-xiaomi-yeelight", | ||
"version": "1.0.0", | ||
"version": "1.0.1", | ||
"description": "A short description about what your plugin does.", | ||
@@ -29,3 +29,3 @@ "license": "Apache-2.0", | ||
"dependencies": { | ||
"miio": "github:viestursr/miio" | ||
"miio": "https://viestursr@github.com/viestursr/miio.git" | ||
}, | ||
@@ -32,0 +32,0 @@ "devDependencies": { |
License Policy Violation
LicenseThis package is not allowed per your license policy. Review the package's license to ensure compliance.
Found 1 instance in 1 package
HTTP dependency
Supply chain riskContains a dependency which resolves to a remote HTTP URL which could be used to inject untrusted code and reduce overall package reliability.
Found 1 instance in 1 package
Manifest confusion
Supply chain riskThis package has inconsistent metadata. This could be malicious or caused by an error when publishing the package.
Found 1 instance in 1 package
License Policy Violation
LicenseThis package is not allowed per your license policy. Review the package's license to ensure compliance.
Found 1 instance in 1 package
GitHub dependency
Supply chain riskContains a dependency which resolves to a GitHub URL. Dependencies fetched from GitHub specifiers are not immutable can be used to inject untrusted code or reduce the likelihood of a reproducible install.
Found 1 instance in 1 package
43627
1