semantic-ui
Advanced tools
Comparing version 0.19.3 to 1.0.1
{ | ||
"name": "semantic-ui", | ||
"version": "0.19.3", | ||
"version": "1.0.1", | ||
"title": "Semantic UI", | ||
"description": "Semantic empowers designers and developers by creating a shared vocabulary for UI.", | ||
"homepage": "http://www.semantic-ui.com", | ||
"author": "Jack Lukic <jacklukic@gmail.com>", | ||
"author": "Jack Lukic <jack@semantic-ui.com>", | ||
"license": "MIT", | ||
"scripts": { | ||
"test": "grunt test" | ||
"test": "gulp test" | ||
}, | ||
"repository": { | ||
"type": "git", | ||
"url": "git://github.com/Semantic-Org/Semantic-UI.git" | ||
"url": "git://github.com/Semantic-Org/Semantic-UI.git#1.0" | ||
}, | ||
"bugs": { | ||
"url": "https://github.com/Semantic-Org/Semantic-UI/issues" | ||
}, | ||
"dependencies": { | ||
@@ -20,31 +23,37 @@ "jquery": "x.x.x" | ||
"devDependencies": { | ||
"docpad": "x.x.x", | ||
"docpad-plugin-eco": "~2.0.3", | ||
"docpad-plugin-ghpages": "~2.4.3", | ||
"docpad-plugin-partials": "~2.9.0", | ||
"grunt": "x.x.x", | ||
"grunt-autoprefixer": "x.x.x", | ||
"grunt-bower-task": "x.x.x", | ||
"grunt-clear": "x.x.x", | ||
"grunt-contrib-clean": "x.x.x", | ||
"grunt-contrib-compress": "x.x.x", | ||
"grunt-contrib-concat": "x.x.x", | ||
"grunt-contrib-copy": "x.x.x", | ||
"grunt-contrib-cssmin": "x.x.x", | ||
"grunt-contrib-less": "x.x.x", | ||
"grunt-contrib-uglify": "x.x.x", | ||
"grunt-contrib-watch": "x.x.x", | ||
"grunt-css": "x.x.x", | ||
"grunt-rtlcss": "x.x.x", | ||
"grunt-docco": "x.x.x", | ||
"grunt-docco-multi": "x.x.x", | ||
"grunt-karma": "x.x.x", | ||
"grunt-karma-coveralls": "x.x.x", | ||
"grunt-replace": "x.x.x", | ||
"karma": "x.x.x", | ||
"karma-coverage": "~0.x.x", | ||
"karma-jasmine": "~0.1.0", | ||
"karma-phantomjs-launcher": "x.x.x", | ||
"karma-spec-reporter": "x.x.x" | ||
"better-console": "x.x.x", | ||
"del": "x.x.x", | ||
"extend": "x.x.x", | ||
"github": "x.x.x", | ||
"gulp": "x.x.x", | ||
"gulp-autoprefixer": "x.x.x", | ||
"gulp-batch": "x.x.x", | ||
"gulp-clone": "x.x.x", | ||
"gulp-concat": "x.x.x", | ||
"gulp-concat-css": "x.x.x", | ||
"gulp-copy": "x.x.x", | ||
"gulp-csscomb": "x.x.x", | ||
"gulp-debug": "x.x.x", | ||
"gulp-flatten": "x.x.x", | ||
"gulp-git": "x.x.x", | ||
"gulp-header": "x.x.x", | ||
"gulp-help": "x.x.x", | ||
"gulp-json-editor": "x.x.x", | ||
"gulp-karma": "x.x.x", | ||
"gulp-less": "x.x.x", | ||
"gulp-minify-css": "x.x.x", | ||
"gulp-notify": "x.x.x", | ||
"gulp-plumber": "x.x.x", | ||
"gulp-print": "x.x.x", | ||
"gulp-prompt": "x.x.x", | ||
"gulp-rename": "x.x.x", | ||
"gulp-replace": "x.x.x", | ||
"gulp-sourcemaps": "x.x.x", | ||
"gulp-uglify": "x.x.x", | ||
"gulp-util": "x.x.x", | ||
"gulp-watch": "x.x.x", | ||
"rtlcss": "x.x.x", | ||
"run-sequence": "x.x.x", | ||
"wrench": "x.x.x" | ||
} | ||
} |
License Policy Violation
LicenseThis package is not allowed per your license policy. Review the package's license to ensure compliance.
Found 1 instance in 1 package
Native code
Supply chain riskContains native code (e.g., compiled binaries or shared libraries). Including native code can obscure malicious behavior.
Found 5 instances in 1 package
Major refactor
Supply chain riskPackage has recently undergone a major refactor. It may be unstable or indicate significant internal changes. Use caution when updating to versions that include significant changes.
Found 1 instance in 1 package
Shell access
Supply chain riskThis module accesses the system shell. Accessing the system shell increases the risk of executing arbitrary code.
Found 1 instance in 1 package
Uses eval
Supply chain riskPackage uses dynamic code execution (e.g., eval()), which is a dangerous practice. This can prevent the code from running in certain environments and increases the risk that the code may contain exploits or malicious behavior.
Found 1 instance in 1 package
Dynamic require
Supply chain riskDynamic require can indicate the package is performing dangerous or unsafe dynamic code execution.
Found 1 instance in 1 package
Filesystem access
Supply chain riskAccesses the file system, and could potentially read sensitive data.
Found 1 instance in 1 package
License Policy Violation
LicenseThis package is not allowed per your license policy. Review the package's license to ensure compliance.
Found 1 instance in 1 package
Native code
Supply chain riskContains native code (e.g., compiled binaries or shared libraries). Including native code can obscure malicious behavior.
Found 6 instances in 1 package
No README
QualityPackage does not have a README. This may indicate a failed publish or a low quality package.
Found 1 instance in 1 package
No bug tracker
MaintenancePackage does not have a linked bug tracker in package.json.
Found 1 instance in 1 package
No v1
QualityPackage is not semver >=1. This means it is not stable and does not support ^ ranges.
Found 1 instance in 1 package
2942084
427
0
0
1
69
34
22889
8
9