← Home

@marimo-team/islands

20
Versions
Apache-2.0
License
Yes
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures No source commit

Maintainers

akshaykamscolnick

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
source-diff obfuscated-file:dist/reveal-component-BpEP9ByP.js AI (source-diff): Bundled reveal.js integration chunk, minified build output. ai
source-diff obfuscated-file:dist/code-visibility-C7-IsaiN.js AI (source-diff): Bundled Vite output, not true obfuscation; no malicious payload in sample. ai
source-diff obfuscated-file:dist/code-visibility-BFhOAQbo.js AI (source-diff): Vite/esbuild bundle chunk, not obfuscation. ai
source-diff net-exec-file:dist/zod-CijjQh4u.js AI (source-diff): Bundled zod dependency chunk, false positive. ai
source-diff net-exec-file:dist/ConnectedDataExplorerComponent-Du3_nUzI.js AI (source-diff): Bundled UI component with fetch+render code, not a dropper. ai
source-diff obfuscated-file:dist/reveal-component-ghVwQgXR.js AI (source-diff): Vite/esbuild bundle chunk, not obfuscation. ai
source-diff obfuscated-file:dist/input-CbEz_aj_.js AI (source-diff): Vite/esbuild bundle chunk, not obfuscation. ai
source-diff obfuscated-file:dist/html-to-image-DXwLcQ6l.js AI (source-diff): Vite/esbuild bundle chunk, not obfuscation. ai
source-diff obfuscated-file:dist/glide-data-editor-DkzAInWG.js AI (source-diff): Vite/esbuild bundle chunk, not obfuscation. ai
dependencies unvetted-dep:@marimo-team/llm-info AI (dependencies): Internal workspace package. ai
dependencies unvetted-dep:@marimo-team/marimo-api AI (dependencies): Internal workspace package. ai
dependencies unvetted-dep:@marimo-team/smart-cells AI (dependencies): Internal workspace package. ai
source-diff obfuscated-file:dist/code-visibility-CFUW5L3i.js AI (source-diff): Bundled Vite chunk, not true obfuscation. ai
source-diff obfuscated-file:dist/glide-data-editor-BDTq6YUb.js AI (source-diff): Bundled data-grid dependency chunk. ai
source-diff net-exec-file:dist/ConnectedDataExplorerComponent-WqG-xX4l.js AI (source-diff): Bundled app chunk using fetch+dynamic import, normal for Vite build. ai
source-diff obfuscated-file:dist/html-to-image-C86pQALH.js AI (source-diff): Bundled third-party lib chunk. ai
source-diff obfuscated-file:dist/input-AKkGXdyV.js AI (source-diff): Bundled UI component chunk. ai
source-diff obfuscated-file:dist/reveal-component-0u6v5UUq.js AI (source-diff): Bundled reveal.js integration chunk. ai
source-diff obfuscated-file:dist/assets/worker-DEDLIQQV.js AI (source-diff): Minified worker RPC bundle, not obfuscated malware. ai
source-diff net-exec-file:dist/assets/worker-DEDLIQQV.js AI (source-diff): Legit RPC transport code in web worker bundle. ai
source-diff net-exec-file:dist/zod-DXqkaI_w.js AI (source-diff): Bundled zod dependency chunk. ai
source-diff net-exec-file:dist/ConnectedDataExplorerComponent-CyV83R2m.js AI (source-diff): Data explorer component using vega-loader for data fetching; legitimate UI code. ai
source-diff obfuscated-file:dist/code-visibility-BkuwTYAm.js AI (source-diff): Minified UI component bundle; standard Vite build output for this package. ai
source-diff net-exec-file:dist/ConnectedDataExplorerComponent-Z3RP7Vmm.js AI (source-diff): Vega data explorer component; vega-loader network calls are expected for data visualization. ai
source-diff obfuscated-file:dist/c4Diagram-YG6GDRKO-BXlAmZ8Z.js AI (source-diff): Mermaid C4 diagram parser bundled as minified dist chunk; standard build artifact for this package. ai
source-diff obfuscated-file:dist/code-visibility-DrFozVlm.js AI (source-diff): Vite-bundled marimo UI component chunk; legitimate build artifact. ai
source-diff net-exec-file:dist/chunk-TCCFYFTB-D58KeXnC.js AI (source-diff): Langium AST/language-server bundled chunk; network+exec pattern is false positive for this build tool package. ai
source-diff obfuscated-file:dist/react-vega-DBwal82H.js AI (source-diff): Minified react-vega/vega bundle, a declared dependency. ai
source-diff net-exec-file:dist/ConnectedDataExplorerComponent-P92i6wYx.js AI (source-diff): Data explorer component using vega-loader for data fetching; legitimate UI feature. ai
source-diff net-exec-file:dist/Plot-CK0oVgQL.js AI (source-diff): Plotly.js bundle includes fetch for data loading; standard charting library behavior. ai
source-diff net-exec-file:dist/react-vega-DBwal82H.js AI (source-diff): Vega loads data from URLs by design; not malicious. ai
source-diff net-exec-file:dist/zod-W5ZEjzaE.js AI (source-diff): Zod is a declared schema validation dependency; any net/exec pattern is a false positive. ai
source-diff obfuscated-file:dist/input-CSVEkmaZ.js AI (source-diff): Standard minified UI component bundle; matches declared deps pattern. ai
source-diff obfuscated-file:dist/Plot-CK0oVgQL.js AI (source-diff): Minified plotly.js bundle, a declared dependency; long lines are expected. ai
source-diff obfuscated-file:dist/process-output-Bekznt_B.js AI (source-diff): Minified marimo process-output component bundle; standard build artifact. ai
source-diff obfuscated-file:dist/process-output-D_uZ0o1x.js AI (source-diff): Minified Vite build output; long lines are bundled ES module code, not obfuscation. ai
source-diff net-exec-file:dist/ConnectedDataExplorerComponent-D08JKcQg.js AI (source-diff): Standard Vite bundle chunk for a data explorer UI component; imports are named ES module re-exports, not dropper behavior. ai
source-diff obfuscated-file:dist/c4Diagram-YG6GDRKO-C2hc6ne8.js AI (source-diff): Standard Mermaid C4 diagram parser bundle; minified JS from a known OSS library, not malicious obfuscation. ai
source-diff obfuscated-file:dist/html-to-image-DBosi5GK.js AI (source-diff): Standard Vite minified bundle output; readable import structure confirms legitimate build artifact. ai
source-diff obfuscated-file:dist/reveal-component-CFuofbBD.js AI (source-diff): Standard Vite minified bundle output; readable import structure confirms legitimate build artifact. ai
source-diff obfuscated-file:dist/slide-form-DgMI37ES.js AI (source-diff): Standard Vite minified bundle output; readable import structure confirms legitimate build artifact. ai
source-diff obfuscated-file:dist/c4Diagram-YG6GDRKO-CZSU4uqU.js AI (source-diff): Standard mermaid c4Diagram parser bundle; minified parser tables are expected, not malicious. ai
publish-pattern new-deps-added AI (publish-pattern): radix-ui is the official consolidated Radix package replacing individual @radix-ui/* packages; well-known upstream change. ai
source-diff large-new-source-files AI (source-diff): Large visualization library bundles (Plot, vega, cytoscape) are expected for this UI-heavy package. ai
source-diff obfuscated-file:dist/glide-data-editor-CvlvtPWJ.js AI (source-diff): Standard Vite minified bundle output for glide-data-grid component. ai
source-diff obfuscated-file:dist/html-to-image-hMMPiNe_.js AI (source-diff): Standard Vite minified bundle output for html-to-image component. ai
source-diff obfuscated-file:dist/code-visibility-DNiCvIcQ.js AI (source-diff): Standard Vite minified bundle output; consistent with marimo's build pipeline across versions. ai
source-diff obfuscated-file:dist/input-BAOe64zx.js AI (source-diff): Standard Vite minified bundle output for input component. ai
source-diff obfuscated-file:dist/reveal-component-BSwl7P64.js AI (source-diff): Standard Vite minified bundle output for reveal.js component. ai
source-diff obfuscated-file:dist/assets/worker-Bfy15ViQ.js AI (source-diff): Standard Vite minified web worker bundle; RPC transport pattern is normal for worker communication. ai
source-diff net-exec-file:dist/ConnectedDataExplorerComponent-PmilQqXR.js AI (source-diff): Data explorer component using vega/network calls for data loading; no malicious payload pattern. ai
source-diff net-exec-file:dist/assets/worker-Bfy15ViQ.js AI (source-diff): Web worker with RPC transport; network+exec pattern is expected for worker communication. ai
phantom-deps phantom-dep:@types/humanize-duration AI (phantom-deps): Type-only dep; stable false positive. ai
phantom-deps phantom-dep:remark-gfm AI (phantom-deps): Config-referenced markdown plugin; stable false positive. ai
phantom-deps phantom-dep:vega-parser AI (phantom-deps): Config-referenced vega dep; stable false positive. ai
phantom-deps phantom-dep:@mui/material AI (phantom-deps): Config-referenced UI dep; stable false positive. ai
phantom-deps phantom-dep:react-markdown AI (phantom-deps): Config-referenced; stable false positive. ai
phantom-deps phantom-dep:vscode-jsonrpc AI (phantom-deps): Config-referenced LSP dep; stable false positive. ai
phantom-deps phantom-dep:loro-codemirror AI (phantom-deps): Config-referenced; stable false positive. ai
phantom-deps phantom-dep:tailwindcss-animate AI (phantom-deps): CSS build plugin; config-only reference. ai
phantom-deps phantom-dep:@tailwindcss/postcss AI (phantom-deps): PostCSS plugin; config-only reference. ai
phantom-deps phantom-dep:@tailwindcss/typography AI (phantom-deps): Tailwind plugin; config-only reference. ai
phantom-deps phantom-dep:@codemirror/theme-one-dark AI (phantom-deps): Config-referenced theme; stable false positive. ai
phantom-deps phantom-dep:@types/jsdom AI (phantom-deps): Type-only dep; framework-scoped, stable false positive. ai
phantom-deps phantom-dep:@types/js-cookie AI (phantom-deps): Type-only dep; stable false positive. ai
phantom-deps phantom-dep:cssnano AI (phantom-deps): PostCSS build tool; config-only reference, not a runtime import. ai
phantom-deps phantom-dep:htm AI (phantom-deps): Build/config-referenced dep in a large monorepo; stable false positive. ai
phantom-deps phantom-dep:js-cookie AI (phantom-deps): Config-referenced; stable false positive for this package. ai
phantom-deps phantom-dep:@lezer/lr AI (phantom-deps): CodeMirror build dep; config-only reference. ai
source-diff obfuscated-file:dist/reveal-component-BamtQ9kx.js AI (source-diff): Standard Vite/Rollup minified bundle output; samples show readable ES module imports, not malicious obfuscation. ai
source-diff obfuscated-file:dist/code-visibility-DSoiGc1g.js AI (source-diff): Standard Vite/Rollup minified bundle output; samples show readable ES module imports, not malicious obfuscation. ai
source-diff encoded-string-file:dist/main.js AI (source-diff): UMALQURA_DATA is a known Islamic calendar lookup table from @internationalized/date; not a malicious payload. ai
semgrep semgrep:etc-passwd-access AI (semgrep): Appears in a test file checking that /etc/passwd URLs are blocked by URL sanitization logic — not credential harvesting. ai
semgrep semgrep:shady-links-raw-ip AI (semgrep): Fires in test fixtures for IP URL handling tests, not production network calls. ai
semgrep semgrep:api-obfuscation-reflect AI (semgrep): Reflect.get used in a test proxy to validate hotkey configuration — standard JS pattern, not obfuscation. ai
install-scripts install-script:preinstall AI (install-scripts): only-allow pnpm is a standard package manager enforcement script, not malicious. ai

Versions (showing 20 of 20)

Version Deps Published
0.23.13 143 / 42
0.23.12 143 / 42
0.23.11 143 / 42
0.23.10 143 / 42
0.23.9 142 / 42
0.23.8 142 / 42
0.23.7 142 / 42
0.23.6 142 / 42
0.23.5 142 / 42
0.23.4 142 / 42
0.23.3 142 / 42
0.23.2 142 / 42
0.23.1 140 / 42
0.23.0 140 / 42
0.22.5 140 / 42
0.22.4 140 / 42
0.22.3 140 / 42
0.22.2 140 / 42
0.22.1 140 / 42
0.22.0 163 / 52

v0.23.13

10 findings
HIGH New obfuscated file: dist/code-visibility-C7-IsaiN.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New file with network + code execution: dist/ConnectedDataExplorerComponent-Du3_nUzI.js source-diff

Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.

HIGH New obfuscated file: dist/glide-data-editor-DkzAInWG.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/html-to-image-DXwLcQ6l.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/input-CbEz_aj_.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/reveal-component-BpEP9ByP.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/worker-DEDLIQQV.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New file with network + code execution: dist/assets/worker-DEDLIQQV.js source-diff

Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.

HIGH New file with network + code execution: dist/zod-CijjQh4u.js source-diff

Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.

v0.23.12

10 findings
HIGH New obfuscated file: dist/code-visibility-BFhOAQbo.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New file with network + code execution: dist/ConnectedDataExplorerComponent-Du3_nUzI.js source-diff

Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.

HIGH New obfuscated file: dist/glide-data-editor-DkzAInWG.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/html-to-image-DXwLcQ6l.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/input-CbEz_aj_.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/reveal-component-ghVwQgXR.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/assets/worker-DEDLIQQV.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New file with network + code execution: dist/assets/worker-DEDLIQQV.js source-diff

Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.

HIGH New file with network + code execution: dist/zod-CijjQh4u.js source-diff

Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.