Rank#695
- Created
- 6 years ago
- Last commit
- 4 months ago
- Latest release
- v2.41.33 weeks ago
Security Findings
4Hardcoded secrets/API keys2×
SuspiciousScannerSecret Keyword: use s...****
Secret Keyword: ****
dist/extension.js
Sensitive file access
SuspiciousScannerAccess to sensitive file: homedir(),t.slice(1)):t}const m={configDotenv:function(t){const e=r.resolve(process.cwd(),".env");let n="utf8",o=process...
Install-lifecycle script shipped
SuspiciousScannerpackage.json postinstall script is shipped (inert on VSIX install but a build-hygiene / dev-tooling tell): patch-package