Loading npm security reports…
NPM
Installing the package can resolve a self-referential dependency over insecure HTTP. Its shipped JavaScript itself exposes only Babel transformation behavior and establishes no runtime network surface.
Manifest declares itself as an HTTP dependency from pack.nppacks.com.
package.jsonView on unpkg · L9The same insecure self-reference is also in devDependencies.
package.jsonView on unpkg · L17Unrelated network-capable dependencies are declared but unused by the only source file.
index.jsView on unpkg · L1Manifest declares itself as an HTTP dependency from pack.nppacks.com.
package.jsonView on unpkg · L9The same insecure self-reference is also in devDependencies.
package.jsonView on unpkg · L17Unrelated network-capable dependencies are declared but unused by the only source file.
index.jsView on unpkg · L1