Loading npm security reports…
A CLI and GitHub Action that securely centralizes your environment variables from AWS SSM or Azure Key Vault as a single source of truth
The package has a prepare lifecycle hook that invokes Lefthook, potentially installing repository Git hooks. Runtime secret access is explicit CLI/GitHub Action functionality and no malicious exfiltration path was found.
package.json: prepare runs `lefthook install`, which can modify Git hooks in install/prepare contexts.
package.jsonView on unpkgpackage.json: prepare runs `lefthook install`, which can modify Git hooks in install/prepare contexts.
package.jsonView on unpkg