Comparing version 0.8.18 to 0.8.19
{ | ||
"name": "neft", | ||
"version": "0.8.18", | ||
"version": "0.8.19", | ||
"preferGlobal": true, | ||
@@ -29,9 +29,10 @@ "description": "Command-line interface for building Neft.io projects", | ||
"node-static": "^0.7.6", | ||
"nml-parser": "Neft-io/nml-parser#fb499b5", | ||
"bundle-builder": "Neft-io/bundle-builder#baaa87f", | ||
"uglify-js": "^2.6.1", | ||
"coffee-cache": "^1.0.2", | ||
"nml-parser": "Neft-io/nml-parser#c2d305f", | ||
"bundle-builder": "Neft-io/bundle-builder#421a072", | ||
"sample-project": "Neft-io/sample-project#ec1224e", | ||
"android-runtime": "Neft-io/android-runtime#2654be7", | ||
"ios-runtime": "Neft-io/ios-runtime#646ed4e", | ||
"uglify-js": "^2.6.1" | ||
"ios-runtime": "Neft-io/ios-runtime#646ed4e" | ||
} | ||
} |
License Policy Violation
LicenseThis package is not allowed per your license policy. Review the package's license to ensure compliance.
Found 1 instance in 1 package
GitHub dependency
Supply chain riskContains a dependency which resolves to a GitHub URL. Dependencies fetched from GitHub specifiers are not immutable can be used to inject untrusted code or reduce the likelihood of a reproducible install.
Found 2 instances in 1 package
Manifest confusion
Supply chain riskThis package has inconsistent metadata. This could be malicious or caused by an error when publishing the package.
Found 2 instances in 1 package
License Policy Violation
LicenseThis package is not allowed per your license policy. Review the package's license to ensure compliance.
Found 1 instance in 1 package
GitHub dependency
Supply chain riskContains a dependency which resolves to a GitHub URL. Dependencies fetched from GitHub specifiers are not immutable can be used to inject untrusted code or reduce the likelihood of a reproducible install.
Found 2 instances in 1 package
Manifest confusion
Supply chain riskThis package has inconsistent metadata. This could be malicious or caused by an error when publishing the package.
Found 2 instances in 1 package
6521331
18
+ Addedcoffee-cache@^1.0.2
+ Addedcoffee-cache@1.0.2(transitive)
+ Addedmkpath@0.1.0(transitive)