sveltekit-modal
Advanced tools
Comparing version
@@ -5,3 +5,3 @@ { | ||
"name": "sveltekit-modal", | ||
"version": "1.0.8", | ||
"version": "1.0.9", | ||
"description": "Write Python endpoints in SvelteKit using Modal", | ||
@@ -49,3 +49,3 @@ "repository": { | ||
"dependencies": { | ||
"rollup-plugin-globsync": "ConProgramming/rollup-plugin-globsync#a6976d5", | ||
"rollup-plugin-globsync": "ConProgramming/rollup-plugin-globsync#650e6b4", | ||
"vite": "^4.0.0", | ||
@@ -52,0 +52,0 @@ "zx": "^7.0.0" |
GitHub dependency
Supply chain riskContains a dependency which resolves to a GitHub URL. Dependencies fetched from GitHub specifiers are not immutable can be used to inject untrusted code or reduce the likelihood of a reproducible install.
Found 1 instance in 1 package
Manifest confusion
Supply chain riskThis package has inconsistent metadata. This could be malicious or caused by an error when publishing the package.
Found 1 instance in 1 package
GitHub dependency
Supply chain riskContains a dependency which resolves to a GitHub URL. Dependencies fetched from GitHub specifiers are not immutable can be used to inject untrusted code or reduce the likelihood of a reproducible install.
Found 1 instance in 1 package
Manifest confusion
Supply chain riskThis package has inconsistent metadata. This could be malicious or caused by an error when publishing the package.
Found 1 instance in 1 package