Grafana GitHub Breach Exposes Source Code via TanStack npm Attack

Grafana Labs on May 19 2026 said an investigation into its recent breach found no evidence of customer production systems or operations being compromised It said the scope of the incident is limited to the Grafana Labs GitHub environment which includes public and private source code along with internal GitHub repositories After the initial assessment we found that in addition to source