libnpmpublish
Advanced tools
Comparing version 9.0.8 to 9.0.9
const sigstore = require('sigstore') | ||
const { readFile } = require('fs/promises') | ||
const { readFile } = require('node:fs/promises') | ||
const ci = require('ci-info') | ||
@@ -4,0 +4,0 @@ const { env } = process |
@@ -6,3 +6,3 @@ const { fixer } = require('normalize-package-data') | ||
const semver = require('semver') | ||
const { URL } = require('url') | ||
const { URL } = require('node:url') | ||
const ssri = require('ssri') | ||
@@ -9,0 +9,0 @@ const ciInfo = require('ci-info') |
'use strict' | ||
const { URL } = require('url') | ||
const { URL } = require('node:url') | ||
const npa = require('npm-package-arg') | ||
@@ -5,0 +5,0 @@ const npmFetch = require('npm-registry-fetch') |
{ | ||
"name": "libnpmpublish", | ||
"version": "9.0.8", | ||
"version": "9.0.9", | ||
"description": "Programmatic API for the bits behind npm publish and unpublish", | ||
@@ -5,0 +5,0 @@ "author": "GitHub Inc.", |
License Policy Violation
LicenseThis package is not allowed per your license policy. Review the package's license to ensure compliance.
Found 1 instance in 1 package
License Policy Violation
LicenseThis package is not allowed per your license policy. Review the package's license to ensure compliance.
Found 1 instance in 1 package
Filesystem access
Supply chain riskAccesses the file system, and could potentially read sensitive data.
Found 1 instance in 1 package
27198
2