@luxonis/visualizer-protobuf
Supply chain provenance
Status for the latest visible version.
Without SLSA provenance there is no cryptographic link between this tarball and the public source, so a manually published version cannot be tied back to a reviewed commit.
Maintainers
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| source-diff | obfuscated-file:dist/index-BIIHWu1p.js | AI (source-diff): Bundled vendor deps (lezer, CodeMirror, react libs), not true obfuscation. | ai | |
| source-diff | net-exec-file:dist/index-Dz5WEhSI.js | AI (source-diff): Same bundled build artifact, no fetched/executed payload. | ai | |
| source-diff | net-exec-file:dist/index-BIIHWu1p.js | AI (source-diff): Bundled comlink/protobuf/websocket code inherent to visualizer, not a dropper. | ai | |
| source-diff | obfuscated-file:dist/decodeImage-CknL-EpW.js | AI (source-diff): Bundled lodash/codemirror chunk, not true obfuscation. | ai | |
| source-diff | net-exec-file:dist/index-EUVKEGOd.js | AI (source-diff): Pattern match inside bundled build output, no dropper behavior. | ai | |
| source-diff | net-exec-file:dist/index-DJU7lf9I.js | AI (source-diff): Pattern match inside bundled build output, no dropper behavior. | ai | |
| source-diff | net-exec-file:dist/decodeImage-CknL-EpW.js | AI (source-diff): Pattern match inside bundled build output, no dropper behavior. | ai | |
| source-diff | obfuscated-file:dist/index-DgJK8CVA.js | AI (source-diff): Bundled build output (rollup/vite chunk with third-party libs), not true obfuscation. | ai | |
| source-diff | net-exec-file:dist/index-DgJK8CVA.js | AI (source-diff): Bundled chunk combining protobuf/comlink libs; no dropper behavior found. | ai | |
| source-diff | obfuscated-file:dist/index-8bTMarZg.js | AI (source-diff): Bundled editor/language support chunk (lezer-generator), standard bundler output. | ai | |
| source-diff | net-exec-file:dist/index-1D5S7eR3.js | AI (source-diff): Bundled deps, no malicious network target identified. | ai | |
| source-diff | net-exec-file:dist/index-BWUFvnnr.js | AI (source-diff): Bundled protobuf/react code; no evidence of malicious exec/exfil. | ai | |
| source-diff | obfuscated-file:dist/index-BWUFvnnr.js | AI (source-diff): Standard rollup bundle chunk with many legit imports. | ai | |
| source-diff | obfuscated-file:dist/index-4r5XO2hY.js | AI (source-diff): lezer-generator bundled output, not obfuscation. | ai | |
| source-diff | obfuscated-file:dist/index-1D5S7eR3.js | AI (source-diff): Bundled React/UI code from rollup build, not obfuscated. | ai | |
| source-diff | obfuscated-file:dist/index-ANY2H_o3.js | AI (source-diff): Bundled lezer-generator parser output, minified not obfuscated. | ai | |
| source-diff | obfuscated-file:dist/index-BG2Ave0p.js | AI (source-diff): Bundled lezer-generator parser output, minified not obfuscated. | ai | |
| source-diff | net-exec-file:dist/index-5b5DlnDp.js | AI (source-diff): Minified bundle triggers net+exec heuristic; no malicious behavior found. | ai | |
| source-diff | obfuscated-file:dist/index-5b5DlnDp.js | AI (source-diff): Bundled rollup/vite chunk (React/lezer/protobuf), not true obfuscation. | ai | |
| source-diff | obfuscated-file:dist/index-Bxmz2JGo.js | AI (source-diff): Bundled build output, not obfuscation. | ai | |
| source-diff | obfuscated-file:dist/index-bekfXYhw.js | AI (source-diff): lezer-generator output bundled by rollup, not obfuscation. | ai | |
| source-diff | obfuscated-file:dist/index-C160LZiW.js | AI (source-diff): lezer-generator bundled output. | ai | |
| source-diff | obfuscated-file:dist/index-CEmQpnf1.js | AI (source-diff): lezer-generator bundled output. | ai | |
| source-diff | obfuscated-file:dist/index-CF1qeWCH.js | AI (source-diff): lezer-generator bundled output. | ai | |
| source-diff | net-exec-file:dist/index-Bxmz2JGo.js | AI (source-diff): Minified bundle triggers net+exec heuristic; no malicious behavior found. | ai | |
| source-diff | obfuscated-file:dist/index-CKt938IX.js | AI (source-diff): Bundled build output, not true obfuscation. | ai | |
| source-diff | obfuscated-file:dist/index-BJj3DCnA.js | AI (source-diff): Bundled build output (rollup), not true obfuscation. | ai | |
| source-diff | net-exec-file:dist/index-BJj3DCnA.js | AI (source-diff): Bundled app code with normal fetch/dynamic-import, not dropper malware. | ai | |
| source-diff | net-exec-file:dist/index-CKt938IX.js | AI (source-diff): Bundled app code with normal fetch/dynamic-import, not dropper malware. | ai | |
| source-diff | obfuscated-file:dist/index-BsdHlfPa.js | AI (source-diff): lezer-generator output, minified bundle. | ai | |
| source-diff | obfuscated-file:dist/index-DDDjobHa.js | AI (source-diff): Bundled vendor chunk, minified not obfuscated. | ai | |
| source-diff | obfuscated-file:dist/index-BNBWBozz.js | AI (source-diff): Rollup-bundled vendor code, minified not obfuscated. | ai | |
| source-diff | net-exec-file:dist/index-AY6RFcAW.js | AI (source-diff): Bundled library chunk contains normal fetch/eval patterns from deps, no malicious behavior. | ai | |
| source-diff | obfuscated-file:dist/index-AY6RFcAW.js | AI (source-diff): Rollup-bundled vendor code (lodash/react/protobuf), not obfuscation. | ai | |
| source-diff | net-exec-file:dist/index-BNBWBozz.js | AI (source-diff): Bundled library chunk, no malicious network/exec behavior found. | ai | |
| source-diff | obfuscated-file:dist/index-B6CSn3bW.js | AI (source-diff): lezer-generator output, minified bundle. | ai | |
| source-diff | obfuscated-file:dist/index-CmXHlFr5.js | AI (source-diff): lezer-generator output, minified bundle. | ai | |
| source-diff | obfuscated-file:dist/index-Bf5zVcAc.js | AI (source-diff): Bundled codemirror language module, not obfuscation. | ai | |
| source-diff | obfuscated-file:dist/index-BG23zkos.js | AI (source-diff): Bundled lezer-generator output, not obfuscation. | ai | |
| source-diff | obfuscated-file:dist/index-Bl1gi-zh.js | AI (source-diff): Bundled lezer-generator CSS module, not obfuscation. | ai | |
| source-diff | obfuscated-file:dist/index-B4QJRCC8.js | AI (source-diff): Bundled lezer parser/UI code, minified not obfuscated. | ai | |
| source-diff | obfuscated-file:dist/index-BIOeAcXP.js | AI (source-diff): Same bundled parser output pattern as sibling files. | ai | |
| source-diff | obfuscated-file:dist/index-BimzNWm5.js | AI (source-diff): Bundled lezer language support, minified build output. | ai | |
| source-diff | obfuscated-file:dist/index-BFuISzq9.js | AI (source-diff): Bundled lezer/codemirror language support, minified build output. | ai | |
| source-diff | net-exec-file:dist/index-B_3PleIH.js | AI (source-diff): Bundled visualizer UI code; no concrete malicious network target identified. | ai | |
| source-diff | obfuscated-file:dist/index-B_3PleIH.js | AI (source-diff): Bundled React/UI code, minified not obfuscated. | ai | |
| source-diff | obfuscated-file:dist/index--95nXh6E.js | AI (source-diff): Bundled lezer-generator parser output, not obfuscation. | ai | |
| source-diff | obfuscated-file:dist/index-0eLSwhoo.js | AI (source-diff): lezer-generator generated parser bundle, minified not obfuscated. | ai | |
| source-diff | obfuscated-file:dist/index-BO7SiaLV.js | AI (source-diff): lezer-generator generated parser bundle, minified not obfuscated. | ai | |
| source-diff | obfuscated-file:dist/index-B9Z4uArr.js | AI (source-diff): Generated lezer parser bundle, not obfuscation. | ai | |
| source-diff | obfuscated-file:dist/index-_apLu4SL.js | AI (source-diff): Rollup bundle of app code (React/MUI), not obfuscation. | ai | |
| source-diff | net-exec-file:dist/index-_apLu4SL.js | AI (source-diff): Bundled app code, false positive on minified/network-capable app bundle. | ai | |
| source-diff | obfuscated-file:dist/index-B_6J3epQ.js | AI (source-diff): Generated lezer parser bundle, not obfuscation. | ai | |
| source-diff | net-exec-file:dist/index-Be6EYnox.js | AI (source-diff): Bundled code; network+eval pattern from standard libs, not malicious. | ai | |
| source-diff | net-exec-file:dist/index-BlROWu-J.js | AI (source-diff): Bundled React/UI code, not a dropper. | ai | |
| source-diff | obfuscated-file:dist/index-BlROWu-J.js | AI (source-diff): Bundled minified output. | ai | |
| source-diff | obfuscated-file:dist/index-BEUjTghZ.js | AI (source-diff): Bundled minified output. | ai | |
| source-diff | obfuscated-file:dist/index-B-g3aWAt.js | AI (source-diff): Bundled minified output (lezer parser generator). | ai | |
| source-diff | obfuscated-file:dist/index-Be6EYnox.js | AI (source-diff): Main bundled app entry, standard rollup output. | ai | |
| source-diff | obfuscated-file:dist/index-Bi4nJb4U.js | AI (source-diff): Main bundle output from rollup build, not obfuscation. | ai | |
| source-diff | obfuscated-file:dist/index-BF6pGj6y.js | AI (source-diff): React/rollup bundled output, not obfuscation. | ai | |
| source-diff | net-exec-file:dist/index-BF6pGj6y.js | AI (source-diff): Bundled app code, no concrete malicious network+exec behavior shown. | ai | |
| source-diff | net-exec-file:dist/index-Bi4nJb4U.js | AI (source-diff): Bundled protobuf/UI code; no dropper/loader pattern in sample. | ai | |
| source-diff | obfuscated-file:dist/index-BsCcQbSo.js | AI (source-diff): Bundled codemirror language module. | ai | |
| source-diff | obfuscated-file:dist/index-BN1XXU26.js | AI (source-diff): Bundled codemirror language module. | ai | |
| source-diff | obfuscated-file:dist/index-BGnPWAxp.js | AI (source-diff): Bundled lezer/codemirror language grammar, minified not obfuscated. | ai | |
| source-diff | obfuscated-file:dist/index-aCoqRfTl.js | AI (source-diff): Rollup-bundled lezer/codemirror chunk, long lines are minification. | ai | |
| source-diff | obfuscated-file:dist/index-B4osw0hO.js | AI (source-diff): Bundled lezer parser chunk. | ai | |
| source-diff | obfuscated-file:dist/index-B7AEFuPp.js | AI (source-diff): Bundled lezer parser chunk. | ai | |
| source-diff | obfuscated-file:dist/index-B8amzXr1.js | AI (source-diff): Bundled React/mosaic vendor chunk, not obfuscation. | ai | |
| source-diff | net-exec-file:dist/index-B8amzXr1.js | AI (source-diff): Bundled vendor chunk false positive. | ai | |
| source-diff | obfuscated-file:dist/index-BNRG4n8S.js | AI (source-diff): Bundled codemirror/lezer chunk, minified build output not obfuscation. | ai | |
| source-diff | net-exec-file:dist/index-BTrKy8v9.js | AI (source-diff): Same bundled chunk; no malicious network+exec behavior evident. | ai | |
| source-diff | obfuscated-file:dist/index-BTrKy8v9.js | AI (source-diff): Bundled React/MUI/zustand chunk, standard bundler output. | ai | |
| source-diff | net-exec-file:dist/index-Uxn2h85I.js | AI (source-diff): Same bundled chunk pattern as above. | ai | |
| source-diff | net-exec-file:dist/index-BP2oHfNr.js | AI (source-diff): Comlink/websocket usage inherent to visualizer bundle, not dropper behavior. | ai | |
| source-diff | obfuscated-file:dist/index-BP2oHfNr.js | AI (source-diff): Bundled rollup output, not true obfuscation; matches declared deps. | ai | |
| source-diff | net-exec-file:dist/index-wxnOzmSh.js | AI (source-diff): Bundled vendor libs; no concrete malicious network/exec behavior shown. | ai | |
| source-diff | obfuscated-file:dist/index-BArQYoU9.js | AI (source-diff): Bundled lezer-generator/CodeMirror parser code, not true obfuscation. | ai | |
| source-diff | obfuscated-file:dist/index-BLTVlMYq.js | AI (source-diff): Bundled React/MUI vendor code from rollup build. | ai | |
| source-diff | net-exec-file:dist/index-BLTVlMYq.js | AI (source-diff): Bundled vendor libs; no concrete malicious network/exec behavior shown. | ai | |
| source-diff | large-new-source-files | AI (source-diff): Expected growth from bundling many editor/protobuf dependencies. | ai | |
| source-diff | net-exec-file:dist/decodeImage-DseBx4N0.js | AI (source-diff): Bundled UI/parser code; no fetched-binary or exfil behavior. | ai | |
| provenance | publisher-changed | AI (provenance): Move to GitHub Actions CI publishing, consistent with provenance direction unchanged/improved. | ai | |
| source-diff | obfuscated-file:dist/index-6BlZXZuC.js | AI (source-diff): lezer-generator output bundled into dist, not obfuscation. | ai | |
| source-diff | obfuscated-file:dist/decodeImage-DseBx4N0.js | AI (source-diff): Bundled lodash/codemirror internals, not true obfuscation. | ai | |
| phantom-deps | phantom-dep:nearley | AI (phantom-deps): Build-time parser generator referenced in config, not a runtime import. | ai | |
| phantom-deps | phantom-dep:@babel/preset-react | AI (phantom-deps): Babel preset loaded by convention in build config, not directly imported. | ai | |
| phantom-deps | phantom-dep:@tailwindcss/cli | AI (phantom-deps): Tailwind CLI build tool, not a runtime import. | ai | |
| phantom-deps | phantom-dep:@emotion/styled | AI (phantom-deps): Emotion styling lib used via convention/peer, stable false positive for this package. | ai | |
| phantom-deps | phantom-dep:tailwindcss | AI (phantom-deps): CSS build tool referenced in build scripts/config, not a runtime import. | ai | |
| phantom-deps | phantom-dep:ts-proto | AI (phantom-deps): Protobuf code-gen tool used in build scripts, not a runtime import. | ai |
Versions (showing 27 of 27)
| Version | Deps | Published |
|---|---|---|
| 3.1.14 | 21 / 27 | |
| 3.1.13 | 21 / 27 | |
| 3.1.12 | 21 / 27 | |
| 3.1.11 | 21 / 27 | |
| 3.1.10 | 21 / 27 | |
| 3.1.9 | 21 / 27 | |
| 3.1.8 | 21 / 27 | |
| 3.1.7 | 21 / 27 | |
| 3.1.6 | 21 / 27 | |
| 3.1.5 | 21 / 27 | |
| 3.1.4 | 21 / 27 | |
| 3.1.3 | 21 / 27 | |
| 3.1.2 | 21 / 27 | |
| 3.1.1 | 21 / 27 | |
| 3.1.0 | 21 / 27 | |
| 3.0.2 | 21 / 27 | |
| 3.0.1 | 21 / 27 | |
| 2.68.12 | 21 / 24 | |
| 2.68.11 | 21 / 24 | |
| 2.68.10 | 21 / 24 | |
| 2.68.9 | 21 / 24 | |
| 2.68.8 | 21 / 24 | |
| 2.68.7 | 21 / 24 | |
| 2.68.6 | 21 / 24 | |
| 2.68.5 | 21 / 24 | |
| 2.68.4 | 21 / 24 | |
| 2.68.3 | 21 / 24 |
v3.1.13
7 findingsThis version was published by a different npm account than previous versions on 2026-03-26. This could indicate a legitimate maintainer transition or an account compromise.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v3.1.12
5 findingsThis version was published by a different npm account than previous versions on 2026-03-25. This could indicate a legitimate maintainer transition or an account compromise.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v3.1.11
10 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
This version was published by a different npm account (dzenda) than the most recent previously approved version (davidfencl) on 2026-03-20, but dzenda is listed as a maintainer on prior approved versions (matched on name). This looks like a manual publish by a known maintainer rather than a publisher change. Recorded as INFO for audit trail.
v3.1.10
7 findingsThis version was published by a different npm account than previous versions on 2026-03-19. This could indicate a legitimate maintainer transition or an account compromise.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v3.1.9
8 findingsThis version was published by a different npm account than previous versions on 2026-03-19. This could indicate a legitimate maintainer transition or an account compromise.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v3.1.8
7 findingsThis version was published by a different npm account than previous versions on 2026-03-19. This could indicate a legitimate maintainer transition or an account compromise.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v3.1.7
9 findingsThis version was published by a different npm account than previous versions on 2026-03-19. This could indicate a legitimate maintainer transition or an account compromise.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v3.1.6
8 findingsThis version was published by a different npm account than previous versions on 2026-03-18. This could indicate a legitimate maintainer transition or an account compromise.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v3.1.5
6 findingsThis version was published by a different npm account than previous versions on 2026-03-17. This could indicate a legitimate maintainer transition or an account compromise.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v3.1.4
8 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v3.1.3
6 findingsThis version was published by a different npm account than previous versions on 2026-03-13. This could indicate a legitimate maintainer transition or an account compromise.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v3.1.2
4 findingsThis version was published by a different npm account than previous versions on 2026-03-12. This could indicate a legitimate maintainer transition or an account compromise.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v3.1.1
7 findingsThis version was published by a different npm account than previous versions on 2026-03-11. This could indicate a legitimate maintainer transition or an account compromise.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v3.1.0
6 findingsThis version was published by a different npm account than previous versions on 2026-03-06. This could indicate a legitimate maintainer transition or an account compromise.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v3.0.2
6 findingsThis version was published by a different npm account than previous versions on 2026-02-25. This could indicate a legitimate maintainer transition or an account compromise.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v3.0.1
8 findingsThis version was published by a different npm account than previous versions on 2026-02-20. This could indicate a legitimate maintainer transition or an account compromise.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v2.68.12
19 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
This version was published by a different npm account (dzenda) than the most recent previously approved version (davidfencl) on 2026-01-05, but dzenda is listed as a maintainer on prior approved versions (matched on name). This looks like a manual publish by a known maintainer rather than a publisher change. Recorded as INFO for audit trail.
v2.68.11
16 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v2.68.10
16 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v2.68.9
16 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v2.68.8
16 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v2.68.7
16 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v2.68.6
16 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v2.68.5
16 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v2.68.4
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v2.68.3
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.