# babel-loader@7.1.5 — Threat Briefing Low risk — threat briefing for npm package babel-loader@7.1.5. Capabilities, risk paths, and what to check. - **Ecosystem:** npm - **Latest version:** 10.0.0 - **License:** MIT ## Risk - **Level:** low - **Summary:** No risky changes detected ## Capability Summary | Capability | Level | |---|---| | install scripts | Prepublish | | network access | none | | filesystem | both | | shell execution | none | ## Capabilities ### Install Scripts - Install-time script execution [common] ### Other - No dependency lockfile (unpinned installs) [common] - Cryptographic hashing [common] - Filesystem write to temp directory [common] ### Environment - Environment variable access [common] ### Filesystem - Filesystem read [expected] - Filesystem write [expected] ## Key Signals - **** ## Trust Signals ### Code Safety - No obfuscated or encoded payloads - No dynamic code execution - No access to sensitive paths ## Maintainer