@pkgr/core
npmv0.3.5Shared core module for `@pkgr` packages or any package else
License MIT18 versions1 maintainers0 deps31,390,875 weekly dl
un-ts/pkgr66
/ 100
Health
do not use
Do not install. Package is flagged as malicious (advisory GHSA-f29h-pxvx-f335).
Health breakdown0 – 100
10/25
maintenance
20/20
popularity
25/25
security
9/15
maturity
2/15
community
Vulnerabilities
1
1 low
Advisories (1)
| Severity | ID | Summary | Fixed in |
|---|---|---|---|
| unknown | MAL-2025-6021 | Malicious code in @pkgr/core (npm) | — |
Bundle & TypeScript
📦
Bundle Size
1.3 KBminified
0.8 KB gzipped
0 direct dependencies
ESMscoped
🌟
TypeScript
10/10typed
bundled
⚠ Malicious package
This package is flagged as malicious by the OpenSSF/OSV community feed. Do not install.
Advisory:
GHSA-f29h-pxvx-f335 — eslint-config-prettier, eslint-plugin-prettier, synckit, @pkgr/core, napi-postinstall have embedded malicious codeHealth History
Dependency Tree
License Audit
API access
Get this data programmatically — free, no authentication.
curl https://depscope.dev/api/check/npm/@pkgr/coreFirst published · 2023-12-26T15:17:30.822Z
Last updated · 2025-07-19T07:20:51.670Z