npm @company-semantics/contracts @2.4.1
score
0.8667
high
flagged
2026-05-21 00:29
Signals fired
| signal | weight | rationale |
|---|---|---|
| cadence | ||
| rapid_release | 0.8 | 4 versions in last 24h: ['2.3.0', '2.3.1', '2.4.0', '2.4.1'] |
| topology | ||
| mass_publish_burst | 0.8 | publisher 'GitHub Actions' pushed 139 packages in the last 15min on npm |
| enrichment | ||
| repo_doesnt_exist | 1.0 | claimed repo company-semantics/company-semantics-contracts returns 404 on github.com |
Prior profile (what it deviated from)
{
"had_install_script": false,
"maintainers": [
"companysemantics"
],
"versions": 227
}
Evidence (package doc at flag time)
{
"dependencies_count": 1,
"dist": {
"integrity": "sha512-GBC6X8tVbQBU+hFN9HRX955JlnYhDXv6dYz5Rqdv1qXt4+a2QhJ+xhrcqgajRiPqvP4T+cFYEJnk78a62GvqSg==",
"tarball": "https://registry.npmjs.org/@company-semantics/contracts/-/contracts-2.4.1.tgz",
"unpackedSize": 714398
},
"dist-tags": {
"latest": "2.4.1"
},
"latest_version": "2.4.1",
"maintainers": [
{
"email": "admin@companysemantics.ai",
"name": "companysemantics"
}
],
"num_versions": 228,
"repository": {
"type": "git",
"url": "git+https://github.com/company-semantics/company-semantics-contracts.git"
},
"scripts": {
"build": "tsc -b --noEmit",
"ci:local": "pnpm typecheck && pnpm lint:md && pnpm guard:test && GUARD_DEPENDENCY_ROOT=../ pnpm guard",
"generate:api": "pnpm generate:api-types && pnpm generate:spec-hash",
"generate:api-types": "openapi-typescript openapi/backend.yaml -o src/api/generated.ts",
"generate:api-types:check": "openapi-typescript openapi/backend.yaml -o /tmp/cs-api-types-check.ts && diff -q src/api/generated.ts /tmp/cs-api-types-check.ts",
"generate:current": "tsx ../company-semantics-ci/scripts/generate-current.ts",
"generate:openapi-routes": "tsx scripts/generate-openapi-routes.ts",
"generate:spec-hash": "tsx scripts/generate-spec-hash.ts",
"guard": "GUARD_DEPENDENCY_ROOT=../ tsx ../company-semantics-ci/run-guards.ts --config scripts/ci/guard-entries.ts",
"guard:decision": "npx tsx scripts/ci/decision-guard.ts",
"guard:decision:json": "npx tsx scripts/ci/decision-guard.ts --json",
"guard:decisions-deprecation": "npx tsx scripts/ci/decisions-deprecation-guard.ts",
"guard:decisions-deprecation:json": "npx tsx scripts/ci/decisions-deprecation-guard.ts --json",
"guard:export": "npx tsx scripts/ci/export-guard.ts",
"guard:export:json": "npx tsx scripts/ci/export-guard.ts --json",
"guard:quick": "GUARD_DEPENDENCY_ROOT=../ tsx ../company-semantics-ci/run-guards.ts --config scripts/ci/guard-entries.ts --quick",
"guard:scripts-deps": "npx tsx scripts/ci/scripts-deps-guard.ts",
"guard:test": "vitest run scripts/ci/__tests__",
"guard:version-tag": "npx tsx scripts/ci/version-tag-guard.ts",
"guard:version-tag:json": "npx tsx scripts/ci/version-tag-guard.ts --json",
"guard:vocabulary": "npx tsx scripts/ci/vocabulary-guard.ts",
"guard:vocabulary:json": "npx tsx scripts/ci/vocabulary-guard.ts --json",
"lint:json": "node -e \"JSON.parse(require('fs').readFileSync('package.json'))\"",
"lint:md": "markdownlint-cli2 '**/*.md' '#node_modules'",
"prepare": "husky",
"prepublishOnly": "echo 'ERROR: Publishing is CI-only via tag push. Use pnpm release instead.' && exit 1",
"release": "npx tsx scripts/release.ts",
"test": "vitest run",
"test:run": "vitest run",
"typecheck": "tsc -b --noEmit",
"typecheck:ci": "tsc -p scripts/ci/tsconfig.json"
},
"signal_details": {
"mass_publish_burst": "publisher 'GitHub Actions' pushed 139 packages in the last 15min on npm",
"rapid_release": "4 versions in last 24h: ['2.3.0', '2.3.1', '2.4.0', '2.4.1']",
"repo_doesnt_exist": "claimed repo company-semantics/company-semantics-contracts returns 404 on github.com"
},
"time": {
"created": "2025-12-20T01:42:00.393Z",
"modified": "2026-05-21T02:04:59.218Z"
}
}