← Home

@adyen/adyen-platform-experience-web

23
Versions
License
No
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures No source commit

Maintainers

adyencomborysfromadyenvergilfromadyencamilocvalexandrefromadyennostalgic-octopus

Keywords

adyenadyen-pefpfinanceplatformsadyen-for-platformscomponentsadyen-platform-experience

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
source-diff obfuscated-file:dist/index-BU9H-9Gn.cjs AI (source-diff): Bundled/minified build output, not true obfuscation; no malicious behavior found. ai
source-diff obfuscated-file:dist/index-B1micRJd.cjs AI (source-diff): Minified Vite/esbuild bundle output, not true obfuscation; references first-party Adyen endpoints. ai
source-diff obfuscated-file:dist/index-DbNUA_xB.cjs AI (source-diff): Standard bundler output (esbuild/rollup) for main entry, not true obfuscation. ai
source-diff obfuscated-file:dist/index-LzoB__Hj.cjs AI (source-diff): Rollup/Vite bundled output, not true obfuscation; no malicious behavior present. ai
source-diff obfuscated-file:dist/index-17716b7b.cjs AI (source-diff): Vite/esbuild bundled library output, not true obfuscation. ai
source-diff obfuscated-file:dist/index-BeWwE_B0.cjs AI (source-diff): Standard vite/rollup minified bundle output, not obfuscation; no malicious behavior. ai
source-diff obfuscated-file:dist/adyen-business-financing-XcV1m-JP.cjs AI (source-diff): Minified Vite/Rollup bundle chunk with Sentry debug-id, calls internal API helpers only. ai
source-diff obfuscated-file:dist/adyen-terms-of-service-management-BSaUYzfq.cjs AI (source-diff): Minified bundle chunk, internal API calls only. ai
source-diff obfuscated-file:dist/de-DE-CEsDXBn--CWlL0z1h.cjs AI (source-diff): Locale JSON bundle, minified not obfuscated. ai
source-diff obfuscated-file:dist/adyen-business-financing-C0D0dMfz.cjs AI (source-diff): Sentry-instrumented vite bundle output, not true obfuscation. ai
source-diff obfuscated-file:dist/adyen-terms-of-service-management-CAKY0hG9.cjs AI (source-diff): Sentry-instrumented vite bundle output, not true obfuscation. ai
source-diff obfuscated-file:dist/da-DK-BfsYpvel-C5RJHg06.cjs AI (source-diff): Locale JSON bundle, minified not obfuscated. ai
source-diff obfuscated-file:dist/da-DK-Cv6XUSoW-XrirZvM9.cjs AI (source-diff): Locale JSON bundle, minified not obfuscated. ai
source-diff obfuscated-file:dist/de-DE-B3nctkG8-Dsybuewy.cjs AI (source-diff): Locale JSON bundle, minified not obfuscated. ai
source-diff obfuscated-file:dist/de-DE-BplDsJEb-HPg3XgvU.cjs AI (source-diff): Locale JSON bundle, minified not obfuscated. ai
source-diff obfuscated-file:dist/index-WqTob51p.cjs AI (source-diff): Minified bundled output referencing Adyen's own domains, not obfuscated malware. ai
source-diff obfuscated-file:dist/index-B_Fws5NV.cjs AI (source-diff): Vite/esbuild bundle output referencing Adyen's own domains, not true obfuscation. ai
source-diff obfuscated-file:dist/index-ejbaSyzM.cjs AI (source-diff): Bundled build output (esbuild/vite), calls Adyen's own API; not obfuscation. ai
source-diff obfuscated-file:dist/index-CpBGZ2AH.cjs AI (source-diff): Bundled esbuild/vite output, not true obfuscation; calls only Adyen's own API endpoint. ai
source-diff obfuscated-file:dist/index-Ct9UXGI3.cjs AI (source-diff): Standard bundler minified output for official Adyen UI library; no malicious behavior. ai
source-diff large-new-source-files AI (source-diff): New locale/build files from adding i18n dictionaries, benign. ai
source-diff obfuscated-file:dist/da-DK-a148e492.cjs AI (source-diff): Minified locale JSON dictionary, not obfuscated code. ai
source-diff obfuscated-file:dist/de-DE-a39a50e8.cjs AI (source-diff): Minified locale JSON dictionary, not obfuscated code. ai
source-diff obfuscated-file:dist/es-ES-153e5f15.cjs AI (source-diff): Minified locale JSON dictionary, not obfuscated code. ai
source-diff obfuscated-file:dist/fr-FR-69b3df0d.cjs AI (source-diff): Minified locale JSON dictionary, not obfuscated code. ai
source-diff obfuscated-file:dist/it-IT-efca230f.cjs AI (source-diff): Minified locale JSON dictionary, not obfuscated code. ai
source-diff obfuscated-file:dist/nl-NL-ffbb8184.cjs AI (source-diff): Minified locale JSON dictionary, not obfuscated code. ai
source-diff obfuscated-file:dist/no-NO-eaf65f6f.cjs AI (source-diff): Minified locale JSON dictionary, not obfuscated code. ai
source-diff obfuscated-file:dist/pt-BR-590ccc53.cjs AI (source-diff): Minified locale JSON dictionary, not obfuscated code. ai
source-diff obfuscated-file:dist/sv-SE-18f4e86e.cjs AI (source-diff): Minified locale JSON dictionary, not obfuscated code. ai
phantom-deps phantom-dep:@adyen/kyc-components AI (phantom-deps): Same-org first-party dependency bundled into dist output. ai
source-diff obfuscated-file:dist/adyen-business-financing-C6lRz_Wd.cjs AI (source-diff): Minified vite bundle output of first-party @adyen/kyc-components, not obfuscation. ai
source-diff obfuscated-file:dist/emitEvent-CzZf80Am-CRe0eWPe.cjs AI (source-diff): Bundled preact/runtime code, minified not obfuscated. ai
source-diff obfuscated-file:dist/DebugModal-C7WSGJRZ-9sSpSDNs.cjs AI (source-diff): Bundled build chunk, minified not obfuscated. ai
source-diff obfuscated-file:dist/adyen-terms-of-service-management-t1vKxMa2.cjs AI (source-diff): Bundled build chunk, minified not obfuscated. ai
maintainer-change maintainer-added AI (maintainer-change): Org-managed CI publisher; personnel changes expected on active monorepo. ai
source-diff obfuscated-file:dist/adyen-business-financing-7BWpTbiG.cjs AI (source-diff): Bundled Vite/Rollup output with Sentry debug-id shim, not true obfuscation. ai
phantom-deps phantom-dep:core-js AI (phantom-deps): core-js is a known polyfill runtime dependency; stable false positive for this package. ai
source-diff obfuscated-file:dist/index-C2bfolFC.cjs AI (source-diff): Standard vite/rollup minified bundle output; no true obfuscation signatures present. ai
source-diff obfuscated-file:dist/index-uaN4wZbv.cjs AI (source-diff): Vite/Rollup bundled output with accompanying source map; no true obfuscation indicators present. ai

Versions (showing 23 of 23)

Version Deps Published
1.13.0 1 / 76
1.12.2 1 / 76
1.12.1 3 / 74
1.12.0 3 / 74
1.11.0 3 / 52
1.10.2 2 / 52
1.10.1 2 / 51
1.10.0 2 / 58
1.9.0 2 / 58
1.8.1 2 / 58
1.8.0 2 / 58
1.5.1 2 / 58
1.5.0 2 / 58
1.4.2 2 / 57
1.4.1 2 / 57
1.4.0 2 / 57
1.3.1 2 / 57
1.3.0 2 / 57
1.2.0 2 / 56
1.1.1 2 / 55
1.1.0 2 / 55
1.0.3 2 / 53
1.0.2 2 / 53

v1.13.0

6 findings
HIGH Missing gitHead — previous versions had it provenance

This version has no gitHead field linking it to a source commit, but previous versions did. This suggests the publish environment changed. Published by: GitHub Actions.

HIGH New obfuscated file: dist/adyen-business-financing-7BWpTbiG.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/adyen-terms-of-service-management-t1vKxMa2.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/DebugModal-C7WSGJRZ-9sSpSDNs.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/emitEvent-CzZf80Am-CRe0eWPe.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.12.2

1 finding
INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v1.12.1

10 findings
HIGH Missing gitHead — previous versions had it provenance

This version has no gitHead field linking it to a source commit, but previous versions did. This suggests the publish environment changed. Published by: GitHub Actions.

HIGH New obfuscated file: dist/adyen-business-financing-C0D0dMfz.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/adyen-terms-of-service-management-CAKY0hG9.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/da-DK-BfsYpvel-C5RJHg06.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/da-DK-Cv6XUSoW-XrirZvM9.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/de-DE-B3nctkG8-Dsybuewy.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/de-DE-BplDsJEb-HPg3XgvU.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/de-DE-CEsDXBn--CWlL0z1h.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

INFO Publisher changed: vergilfromadyen → GitHub Actions (on 2026-06-02, now via trusted publisher with provenance) provenance

This version was published by a different npm account (GitHub Actions) than the most recent previously approved version (vergilfromadyen) on 2026-06-02, but it carries Sigstore provenance attestation. This means the package moved to a trusted publisher (CI/CD with OIDC, e.g. GitHub Actions) — a supply-chain integrity improvement, not a compromise, since a stolen npm token cannot forge provenance bound to the source repository. Recorded as INFO for audit trail.

v1.12.0

9 findings
HIGH New obfuscated file: dist/adyen-business-financing-XcV1m-JP.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/adyen-terms-of-service-management-BSaUYzfq.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/da-DK-BfsYpvel-C5RJHg06.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/da-DK-Cv6XUSoW-XrirZvM9.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/de-DE-B3nctkG8-Dsybuewy.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/de-DE-BplDsJEb-HPg3XgvU.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/de-DE-CEsDXBn--CWlL0z1h.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

INFO Publisher changed: vergilfromadyen → GitHub Actions (on 2026-06-01, now via trusted publisher with provenance) provenance

This version was published by a different npm account (GitHub Actions) than the most recent previously approved version (vergilfromadyen) on 2026-06-01, but it carries Sigstore provenance attestation. This means the package moved to a trusted publisher (CI/CD with OIDC, e.g. GitHub Actions) — a supply-chain integrity improvement, not a compromise, since a stolen npm token cannot forge provenance bound to the source repository. Recorded as INFO for audit trail.

v1.11.0

9 findings
HIGH New obfuscated file: dist/adyen-business-financing-C6lRz_Wd.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/adyen-terms-of-service-management-C1Q6Dv8b.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/da-DK-BfsYpvel-C5RJHg06.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/da-DK-Cv6XUSoW-XrirZvM9.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/de-DE-B3nctkG8-Dsybuewy.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/de-DE-BplDsJEb-HPg3XgvU.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/de-DE-CEsDXBn--CWlL0z1h.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

INFO Publisher changed: vergilfromadyen → GitHub Actions (on 2026-04-24, now via trusted publisher with provenance) provenance

This version was published by a different npm account (GitHub Actions) than the most recent previously approved version (vergilfromadyen) on 2026-04-24, but it carries Sigstore provenance attestation. This means the package moved to a trusted publisher (CI/CD with OIDC, e.g. GitHub Actions) — a supply-chain integrity improvement, not a compromise, since a stolen npm token cannot forge provenance bound to the source repository. Recorded as INFO for audit trail.

v1.10.2

3 findings
HIGH New obfuscated file: dist/index-B1micRJd.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

INFO Publisher changed: vergilfromadyen → GitHub Actions (on 2026-03-05, now via trusted publisher with provenance) provenance

This version was published by a different npm account (GitHub Actions) than the most recent previously approved version (vergilfromadyen) on 2026-03-05, but it carries Sigstore provenance attestation. This means the package moved to a trusted publisher (CI/CD with OIDC, e.g. GitHub Actions) — a supply-chain integrity improvement, not a compromise, since a stolen npm token cannot forge provenance bound to the source repository. Recorded as INFO for audit trail.

v1.10.1

2 findings
HIGH New obfuscated file: dist/index-WqTob51p.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.10.0

2 findings
HIGH New obfuscated file: dist/index-B_Fws5NV.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.9.0

2 findings
HIGH New obfuscated file: dist/index-C2bfolFC.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.8.1

2 findings
HIGH New obfuscated file: dist/index-uaN4wZbv.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.8.0

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v1.5.1

13 findings
HIGH New obfuscated file: dist/da-DK-DAJvnb2s.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/de-DE-DFMmcoWN.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/es-ES-DWJu_JsZ.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/fi-FI-MXUK5vu0.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/fr-FR-NK-BqBuh.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/index-ejbaSyzM.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/it-IT-CckThmyL.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/nl-NL-73Hql9dE.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/no-NO-C5RVnfc6.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/pt-BR-DR3yYVRn.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/sv-SE-C92aO-iv.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

INFO Publisher changed: camilocv → vergilfromadyen (on 2025-06-09, known maintainer) provenance

This version was published by a different npm account (vergilfromadyen) than the most recent previously approved version (camilocv) on 2025-06-09, but vergilfromadyen is listed as a maintainer on prior approved versions (matched on name). This looks like a manual publish by a known maintainer rather than a publisher change. Recorded as INFO for audit trail.

v1.5.0

13 findings
HIGH New obfuscated file: dist/da-DK-qSZWEjaU.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/de-DE-Dngq7NwF.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/es-ES-Bjddx94n.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/fi-FI-CNpmToDG.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/fr-FR-CUUHB8JU.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/index-DbNUA_xB.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/it-IT-B-E80zCo.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/nl-NL--CGhOJhH.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/no-NO-D0UNXgzr.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/pt-BR-Du4cDUgf.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/sv-SE-C92aO-iv.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

INFO Publisher changed: camilocv → vergilfromadyen (on 2025-05-27, known maintainer) provenance

This version was published by a different npm account (vergilfromadyen) than the most recent previously approved version (camilocv) on 2025-05-27, but vergilfromadyen is listed as a maintainer on prior approved versions (matched on name). This looks like a manual publish by a known maintainer rather than a publisher change. Recorded as INFO for audit trail.

v1.4.2

12 findings
HIGH New obfuscated file: dist/da-DK-DHGqGo8Q.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/de-DE-k_BRPv7a.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/es-ES-Cy-9bm8z.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/fi-FI-C7ICLuS8.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/fr-FR-DH8euUOp.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/index-CpBGZ2AH.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/it-IT-DsfPVAun.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/nl-NL-DP_t6EpF.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/no-NO-ARsXLWv0.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/pt-BR-CuTqntp7.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/sv-SE-DDAIHLKD.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.4.1

12 findings
HIGH New obfuscated file: dist/da-DK-DHGqGo8Q.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/de-DE-k_BRPv7a.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/es-ES-Cy-9bm8z.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/fi-FI-C7ICLuS8.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/fr-FR-DH8euUOp.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/index-BeWwE_B0.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/it-IT-DsfPVAun.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/nl-NL-DP_t6EpF.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/no-NO-ARsXLWv0.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/pt-BR-CuTqntp7.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/sv-SE-DDAIHLKD.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.4.0

12 findings
HIGH New obfuscated file: dist/da-DK-DHGqGo8Q.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/de-DE-k_BRPv7a.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/es-ES-Cy-9bm8z.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/fi-FI-C7ICLuS8.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/fr-FR-DH8euUOp.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/index-LzoB__Hj.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/it-IT-DsfPVAun.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/nl-NL-DP_t6EpF.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/no-NO-ARsXLWv0.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/pt-BR-CuTqntp7.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/sv-SE-DDAIHLKD.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v1.3.1

13 findings
HIGH New obfuscated file: dist/da-DK-UDr4zLEm.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/de-DE-CRXo3Lip.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/es-ES-DKE_miHr.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/fi-FI-MQMNSR--.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/fr-FR-Bq797--M.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/index-BU9H-9Gn.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/it-IT-P4aG92g4.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/nl-NL-CkNmbOjk.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/no-NO-Cb48UzO1.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/pt-BR-7QdWAx4z.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/sv-SE-DDU8uUdf.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

INFO Publisher changed: camilocv → vergilfromadyen (on 2025-02-17, known maintainer) provenance

This version was published by a different npm account (vergilfromadyen) than the most recent previously approved version (camilocv) on 2025-02-17, but vergilfromadyen is listed as a maintainer on prior approved versions (matched on name). This looks like a manual publish by a known maintainer rather than a publisher change. Recorded as INFO for audit trail.

v1.3.0

13 findings
HIGH New obfuscated file: dist/da-DK-UDr4zLEm.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/de-DE-CRXo3Lip.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/es-ES-DKE_miHr.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/fi-FI-MQMNSR--.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/fr-FR-Bq797--M.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/index-Ct9UXGI3.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/it-IT-P4aG92g4.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/nl-NL-CkNmbOjk.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/no-NO-Cb48UzO1.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/pt-BR-7QdWAx4z.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/sv-SE-DDU8uUdf.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

INFO Publisher changed: camilocv → vergilfromadyen (on 2025-02-17, known maintainer) provenance

This version was published by a different npm account (vergilfromadyen) than the most recent previously approved version (camilocv) on 2025-02-17, but vergilfromadyen is listed as a maintainer on prior approved versions (matched on name). This looks like a manual publish by a known maintainer rather than a publisher change. Recorded as INFO for audit trail.

v1.2.0

13 findings
HIGH New obfuscated file: dist/da-DK-a6a8435e.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/de-DE-d692ac19.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/es-ES-143780e6.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/fi-FI-99b94b3f.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/fr-FR-e0317359.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/index-17716b7b.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/it-IT-1dc05e46.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/nl-NL-40171335.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/no-NO-d689e9ff.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/pt-BR-4b1fd7f1.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/sv-SE-2f0e50d2.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

INFO Publisher changed: camilocv → vergilfromadyen (on 2024-12-11, known maintainer) provenance

This version was published by a different npm account (vergilfromadyen) than the most recent previously approved version (camilocv) on 2024-12-11, but vergilfromadyen is listed as a maintainer on prior approved versions (matched on name). This looks like a manual publish by a known maintainer rather than a publisher change. Recorded as INFO for audit trail.

v1.1.1

11 findings
HIGH New obfuscated file: dist/da-DK-a148e492.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/de-DE-a39a50e8.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/es-ES-153e5f15.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/fr-FR-69b3df0d.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/it-IT-efca230f.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/nl-NL-ffbb8184.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/no-NO-eaf65f6f.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/pt-BR-590ccc53.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/sv-SE-18f4e86e.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

INFO Publisher changed: camilocv → vergilfromadyen (on 2024-09-24, known maintainer) provenance

This version was published by a different npm account (vergilfromadyen) than the most recent previously approved version (camilocv) on 2024-09-24, but vergilfromadyen is listed as a maintainer on prior approved versions (matched on name). This looks like a manual publish by a known maintainer rather than a publisher change. Recorded as INFO for audit trail.

v1.1.0

11 findings
HIGH New obfuscated file: dist/da-DK-a148e492.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/de-DE-a39a50e8.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/es-ES-153e5f15.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/fr-FR-69b3df0d.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/it-IT-efca230f.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/nl-NL-ffbb8184.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/no-NO-eaf65f6f.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/pt-BR-590ccc53.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/sv-SE-18f4e86e.cjs source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

INFO Publisher changed: camilocv → vergilfromadyen (on 2024-09-20, known maintainer) provenance

This version was published by a different npm account (vergilfromadyen) than the most recent previously approved version (camilocv) on 2024-09-20, but vergilfromadyen is listed as a maintainer on prior approved versions (matched on name). This looks like a manual publish by a known maintainer rather than a publisher change. Recorded as INFO for audit trail.

v1.0.3

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v1.0.2

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.