@teambit/aspect
Supply chain provenance
Status for the latest visible version.
Without SLSA provenance there is no cryptographic link between this tarball and the public source, so a manually published version cannot be tied back to a reviewed commit.
Maintainers
Keywords
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| source-diff | obfuscated-file:artifacts/env-template/public/492.79ac167919bfce061f0d.js | AI (source-diff): Webpack bundle of floating-ui library, not obfuscation. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/48.f03f06b0a06b65596634.js | AI (source-diff): Bundled config/run call, no exfil to unrelated destination. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/48.f03f06b0a06b65596634.js | AI (source-diff): Webpack chunk bundle embedding known env config, not obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/228.1ce1de60d390328f1baa.js | AI (source-diff): Webpack chunk bundle, minified build output not obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/compositions.c089a4ab83b99d993efd.js | AI (source-diff): Bundled build output, banner confirms webpack bundler. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/overview.7d12c33fe62f5736b9da.js | AI (source-diff): Bundled build output, banner confirms webpack bundler. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/peers.06b92da119a0084d9671.js | AI (source-diff): Webpack chunk bundle of MDX/react utilities, not obfuscation. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/peers.06b92da119a0084d9671.js | AI (source-diff): Bundled UI utilities, no malicious network exec behavior. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/492.79ac167919bfce061f0d.js | AI (source-diff): Bundled UI library, no malicious network behavior. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/492.5ed1b4c762846908c0fa.js | AI (source-diff): Bundled webpack preview asset, not true obfuscation. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/peers.9c42a839134c18a652e7.js | AI (source-diff): Bundled browser preview code; no exfil destination present. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/peers.9c42a839134c18a652e7.js | AI (source-diff): Bundled webpack preview asset, not true obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/overview.9eceef8f49026c599e60.js | AI (source-diff): Bundled webpack preview asset, not true obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/compositions.d52fbf16bb66a2e91520.js | AI (source-diff): Bundled webpack preview asset, not true obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/94.67cbcdf03085f010a2e5.js | AI (source-diff): Bundled webpack preview asset, not true obfuscation. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/611.2e7acbee3ea0502837ad.js | AI (source-diff): Bundled browser preview code; no exfil destination present. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/611.2e7acbee3ea0502837ad.js | AI (source-diff): Bundled webpack preview asset, not true obfuscation. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/492.5ed1b4c762846908c0fa.js | AI (source-diff): Bundled browser preview code; no exfil destination present. | ai | |
| provenance | no-provenance | AI (provenance): Established package; provenance absence is common and not a risk signal here. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/753.633354a157780af09402.js | AI (source-diff): Bundled webpack chunk; sample shows benign config/runtime code, no dropper behavior. | ai | |
| publish-pattern | rapid-publish | AI (publish-pattern): Bit monorepo publishes hundreds of packages in lockstep; rapid succession is routine. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/peers.2932b7cb3d72ab847baf.js | AI (source-diff): Bundled webpack chunk; no dropper/loader behavior in sample, standard MDX/React runtime. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/peers.2932b7cb3d72ab847baf.js | AI (source-diff): Bundled webpack chunk with standard React/polyfill code. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/overview.67abd0cfbf09c5ebd2f9.js | AI (source-diff): Bundled webpack output flagged explicitly as minified, not obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/compositions.de0029aa49f0a73c05af.js | AI (source-diff): Bundled webpack output flagged explicitly as minified, not obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/84.b4a8e44b08d4f120ba4a.js | AI (source-diff): Bundled webpack preview module output, not obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/753.633354a157780af09402.js | AI (source-diff): Webpack-bundled preview asset, not true obfuscation; standard for this monorepo's artifacts. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/492.7a264cf05d7b02ff36b2.js | AI (source-diff): Bundled floating-ui/react code, no malicious network+exec behavior. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/500.2deb43a32b4e27ba7029.js | AI (source-diff): Bundled dependency policy/config data, not obfuscation. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/500.2deb43a32b4e27ba7029.js | AI (source-diff): Bundled build-config data, no malicious behavior. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/compositions.5b46b0fd1a75410ad997.js | AI (source-diff): Webpack-bundled preview module code. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/overview.f5f901ad93485b6c58f3.js | AI (source-diff): Bundled regenerator-runtime helper code, standard bundler output. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/peers.760c8bf1ed62ef4b9e94.js | AI (source-diff): Bundled peer-exposure shim, standard webpack output. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/492.7a264cf05d7b02ff36b2.js | AI (source-diff): Webpack-bundled UI preview asset, not true obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/compositions.685831e7362b04d5cbdc.js | AI (source-diff): Webpack-bundled UI chunk. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/peers.0ed7d28023f99958109c.js | AI (source-diff): Webpack-bundled peer-exposure shim, minified not obfuscated. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/overview.836d7f1a726d584a5e8c.js | AI (source-diff): Webpack-bundled UI chunk with regenerator-runtime, minified not obfuscated. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/976.131be05c5afb105432da.js | AI (source-diff): Contains only bit workspace config JSON, no exfil/exec behavior. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/976.131be05c5afb105432da.js | AI (source-diff): Bundled workspace-config template chunk, minified not obfuscated. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/492.b820180bfd3f9fbe4986.js | AI (source-diff): Bundled UI code, no fetched/executed remote payload found. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/492.b820180bfd3f9fbe4986.js | AI (source-diff): Webpack-bundled floating-ui/react chunk, minified not obfuscated. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/320.901d818bee5d1e4c5580.js | AI (source-diff): Webpack-bundled UI chunk, minified not obfuscated. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/458.237916ca8a7e8372aab7.js | AI (source-diff): Webpack-bundled preview UI chunk; minified build output. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/444.f9f45c33cfc87ef93e69.js | AI (source-diff): Bundled preview chunk; no fetched-binary or exfil behavior evident. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/444.f9f45c33cfc87ef93e69.js | AI (source-diff): Webpack-bundled preview UI chunk; minified build output, not obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/492.6f64cba5ad046ca9fe50.js | AI (source-diff): Webpack-bundled preview UI chunk (floating-ui); minified build output. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/492.6f64cba5ad046ca9fe50.js | AI (source-diff): Bundled preview chunk; no concrete malicious behavior evident. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/compositions.2b8ad8f522a19348644d.js | AI (source-diff): Bundled webpack output confirmed by analyzer note, not obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/overview.cb06777e1b951bc3a618.js | AI (source-diff): Bundled webpack output confirmed by analyzer note, not obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/peers.ed0263c6316b09bd1f7d.js | AI (source-diff): Webpack-bundled preview chunk (react runtime), minified build output. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/peers.ed0263c6316b09bd1f7d.js | AI (source-diff): Bundled preview chunk; no concrete malicious behavior evident. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/492.a35a2baee52c59dc8d3f.js | AI (source-diff): Webpack-bundled UI preview asset, not true obfuscation. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/peers.b2f4b1c4d851591d1f58.js | AI (source-diff): Bundled runtime, no concrete exfil/malware behavior found. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/peers.b2f4b1c4d851591d1f58.js | AI (source-diff): Webpack bundle, react/MDX runtime code. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/overview.1f394a0f6a18dbfb120d.js | AI (source-diff): Minified bundler output confirmed by analyzer label. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/compositions.403355c44d8f896d7dfb.js | AI (source-diff): Minified bundler output confirmed by analyzer label. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/920.e44ac4284513152821bc.js | AI (source-diff): Webpack-bundled preview module. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/532.791c06c5b2e77eaf5fbb.js | AI (source-diff): Bundled preview runtime, no malicious network target. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/532.791c06c5b2e77eaf5fbb.js | AI (source-diff): Webpack-bundled config/UI asset. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/492.a35a2baee52c59dc8d3f.js | AI (source-diff): Bundled chunk loader, no fetched-binary execution or exfil target. | ai | |
| maintainer-change | maintainer-removed | AI (maintainer-change): Routine maintainer churn in a large monorepo with thousands of synced sub-packages. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/peers.d44b6e1fbf8ac2437477.js | AI (source-diff): Bundled peer-exposure shim, standard webpack pattern. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/overview.428f1249c53bf32fa3d9.js | AI (source-diff): Bundled output explicitly labeled minified, not obfuscated. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/compositions.f38dfc195fb77b40c0ab.js | AI (source-diff): Standard webpack preview-modules bundle. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/847.926d4d3482765239c0b9.js | AI (source-diff): Bundled dependency-resolver config chunk, no malicious network/exec behavior. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/847.926d4d3482765239c0b9.js | AI (source-diff): Bundled config/deps manifest chunk, not obfuscated. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/492.ba8d8c143c7516d21816.js | AI (source-diff): Bundled library code; no concrete exfil/exec behavior, standard webpack chunk. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/492.ba8d8c143c7516d21816.js | AI (source-diff): Webpack-bundled floating-ui/react bundle, minified not obfuscated. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/320.762ef2b410b3d3456b80.js | AI (source-diff): Webpack-bundled frontend chunk, not obfuscation; matches known libs (mdx-js/react). | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/330.f4263579032f6fc6c6c3.js | AI (source-diff): Webpack-bundled build artifact, not obfuscation; standard for this monorepo's env-template. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/330.f4263579032f6fc6c6c3.js | AI (source-diff): Bundled UI code, no exfil/fetch-exec behavior toward unrelated destination. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/overview.282486192e6479d42b21.js | AI (source-diff): Webpack-bundled build artifact. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/compositions.7e9c47db2f83642c399e.js | AI (source-diff): Webpack-bundled build artifact. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/peers.e5b0d5ca9583c2441568.js | AI (source-diff): Webpack-bundled build artifact. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/630.765d4ec92b4febcf00ef.js | AI (source-diff): Bundled preview-modules code, standard build output. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/267.729eca0ed2b71ba151a2.js | AI (source-diff): Bundled JS with standard webpack require/network patterns, no exfil behavior evident. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/267.729eca0ed2b71ba151a2.js | AI (source-diff): Webpack-bundled UI artifact, minified not obfuscated; consistent with bit's build pipeline. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/peers.7263cc95066894df245d.js | AI (source-diff): Bundled MDX/react code, no malicious network/exec behavior. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/peers.7263cc95066894df245d.js | AI (source-diff): Bundled MDX/react code, standard build output. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/overview.815a65580d66c872ae04.js | AI (source-diff): Bundled overview preview code, standard build output. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/compositions.1e921e2d05ce07a65024.js | AI (source-diff): Bundled compositions preview code, standard build output. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/peers.cfedcabece8953cbd439.js | AI (source-diff): Webpack-bundled preview UI chunk, minified not obfuscated. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/overview.0c53a9bce4855bcd3c74.js | AI (source-diff): Webpack-bundled preview UI chunk, minified not obfuscated. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/compositions.6f5dc9233c2bdb2e73e9.js | AI (source-diff): Webpack-bundled preview UI chunk, minified not obfuscated. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/compositions.680332f967831adcf29d.js | AI (source-diff): Bundled preview module code. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/492.1209090abca096c841ff.js | AI (source-diff): Bundled UI library chunk, no malicious behavior. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/492.1209090abca096c841ff.js | AI (source-diff): Bundled floating-ui/React chunk, minified not obfuscated. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/32.4a5bfd3b1b4cefd65f08.js | AI (source-diff): Webpack-bundled preview UI asset, not true obfuscation. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/32.4a5bfd3b1b4cefd65f08.js | AI (source-diff): Bundled build config/chunk loader, no malicious network/exec behavior. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/peers.618b08d31a2d04cb86e4.js | AI (source-diff): Bundled webpack output for peer UI components. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/overview.4e86a088e060c6c954ac.js | AI (source-diff): Bundled webpack output, explicitly labeled minified not obfuscated. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/peers.151d054c90c0450e0eb4.js | AI (source-diff): Bundled MDX/vendor code, not obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/compositions.531932c723004dd4093e.js | AI (source-diff): Bundled preview UI code, not obfuscation. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/418.57a9f4e9f3a059bca08f.js | AI (source-diff): Bundled config/policy data, not net+exec malware. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/418.57a9f4e9f3a059bca08f.js | AI (source-diff): Webpack-bundled preview artifact, not obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/338.f407c0c1f7f4ae30cc94.js | AI (source-diff): Webpack-bundled preview artifact, not obfuscation. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/peers.151d054c90c0450e0eb4.js | AI (source-diff): Bundled vendor code, false positive. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/overview.d98f67f1393e2de9d112.js | AI (source-diff): Bundled preview UI code, not obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/134.05dcf5ec5c072f2a1e5f.js | AI (source-diff): Webpack-bundled UI chunk, minified not obfuscated. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/peers.1a1b921657c218d489ac.js | AI (source-diff): Bundled build output exposing peer deps globally, standard pattern. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/overview.77832fdb33353308f160.js | AI (source-diff): Bundled build output. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/compositions.369ff38bf6d048133667.js | AI (source-diff): Bundled build output. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/492.dca00c589069e2eea3ab.js | AI (source-diff): Bundled build output, not dropper/loader. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/492.dca00c589069e2eea3ab.js | AI (source-diff): Webpack-bundled floating-ui/react code, minified not obfuscated. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/134.05dcf5ec5c072f2a1e5f.js | AI (source-diff): Bundled build output, config data not exec malware. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/37.e820dd89ea85eea5203c.js | AI (source-diff): Bundled dependency-resolver config in webpack chunk, no dropper/loader behavior found. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/compositions.00108c5c3faa8f858c83.js | AI (source-diff): Standard minified webpack bundle for preview UI. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/overview.e3f38ddd9d7b56fdc642.js | AI (source-diff): Standard minified webpack bundle for preview UI. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/peers.8f64711937bdc3721271.js | AI (source-diff): Standard minified webpack bundle exposing peer globals for module federation, benign. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/37.e820dd89ea85eea5203c.js | AI (source-diff): Minified webpack bundle for UI preview chunk, not obfuscation with malicious behavior. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/690.b3e691e5e6d1611f127f.js | AI (source-diff): Bundled build output with webpack run() call, not exfil/dropper. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/compositions.50ef7f4f3de443ef49f2.js | AI (source-diff): Bundled webpack UI chunk. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/overview.8a91b8092061ca57a1cc.js | AI (source-diff): Bundled webpack UI chunk with regenerator-runtime, not obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/peers.46366a9d13fea7c37a1b.js | AI (source-diff): Bundled peer-exposure shim, standard webpack pattern. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/492.8eb53ba6bb0727c1f2f9.js | AI (source-diff): Bundled webpack UI chunk, not obfuscation. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/492.8eb53ba6bb0727c1f2f9.js | AI (source-diff): Bundled build output, no dropper behavior found. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/690.b3e691e5e6d1611f127f.js | AI (source-diff): Bundled build output, standard bit config data. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/492.57429386798f67bdf907.js | AI (source-diff): Bundled source-map library, no real network+exec malicious pattern. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/492.57429386798f67bdf907.js | AI (source-diff): Bundled sourcemap library code (source-map), not obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/462.dbb26d3f43737dc1011a.js | AI (source-diff): Bundled preview module code, not obfuscated malware. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/427.19f7bdfb309c242ac2d6.js | AI (source-diff): Bundled build output; no dropper/exfil behavior, just webpack chunk loader. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/427.19f7bdfb309c242ac2d6.js | AI (source-diff): Webpack-bundled preview asset, not true obfuscation; long minified lines only. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/peers.3acd9df7f20a1d7e6482.js | AI (source-diff): Webpack bundle exposing React peers to globalObj; documented pattern, not malicious. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/overview.08b3e4b6a21583b636db.js | AI (source-diff): Standard webpack bundle output. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/187.4f9f6cd70b22ed88e42f.js | AI (source-diff): Webpack-bundled UI preview artifact, minified not obfuscated. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/187.4f9f6cd70b22ed88e42f.js | AI (source-diff): Bundled config/build data, no fetched payload execution. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/compositions.df1a13815d3db79d92ae.js | AI (source-diff): Standard webpack bundle output. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/peers.88e22deb4db4b49b7a57.js | AI (source-diff): Standard webpack bundle output. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/492.e4543b1bac2292989166.js | AI (source-diff): Webpack-bundled preview UI code (floating-ui/react libs), not obfuscation. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/peers.41481d9508a82eb34a94.js | AI (source-diff): Bundled MDX/react library code, false positive pattern match. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/492.e4543b1bac2292989166.js | AI (source-diff): UI library bundle (floating-ui), false positive pattern match. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/376.7bddaae450e0f318bb91.js | AI (source-diff): Config object passed to internal run() function, not network+exec malware. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/peers.41481d9508a82eb34a94.js | AI (source-diff): Bundled MDX/react webpack chunk, minification not obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/overview.b51b1abeb059aafc83fb.js | AI (source-diff): Bundled webpack chunk, minification not obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/compositions.86b8b8094dfc26869075.js | AI (source-diff): Bundled regenerator-runtime/webpack chunk, minification not obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/354.4298af9cfe3cd9d49e39.js | AI (source-diff): Bundled webpack chunk-loader code, standard minification. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/376.7bddaae450e0f318bb91.js | AI (source-diff): Bundled config/runtime chunk, minified build output not obfuscation. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/170.5ebe22fe14011720ade5.js | AI (source-diff): Bundled build output, no malicious network/exec behavior in sample. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/peers.998da27f851f112b15c0.js | AI (source-diff): Bundled webpack chunk exposing React/MDX namespaces, not obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/overview.fe3c3bfe3395d510fc39.js | AI (source-diff): Bundled build output with standard regenerator-runtime, not obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/compositions.8d5e12da8897acf34e6b.js | AI (source-diff): Bundled preview module code, not obfuscation. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/492.507c7f275abcf3e45aad.js | AI (source-diff): Bundled build output, benign library code. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/492.507c7f275abcf3e45aad.js | AI (source-diff): Bundled webpack chunk (floating-ui lib), not obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/170.5ebe22fe14011720ade5.js | AI (source-diff): Bundled webpack chunk, not obfuscation; standard build artifact for this monorepo. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/773.0a382c28d63715b4a368.js | AI (source-diff): Bundled webpack chunk config data, no real network+exec payload. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/peers.9aab7e6a29ecb248ee97.js | AI (source-diff): Bundled webpack preview chunk exposing peer deps to window, standard Bit pattern. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/overview.df7229a78d6f498dccc4.js | AI (source-diff): Bundled webpack preview chunk. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/compositions.389e30fed09c98d3f5dd.js | AI (source-diff): Bundled webpack preview chunk. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/773.0a382c28d63715b4a368.js | AI (source-diff): Bundled webpack preview chunk, not true obfuscation. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/492.65e9f3de8eec4d87963a.js | AI (source-diff): Webpack chunk loader pattern, no malicious network target. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/492.65e9f3de8eec4d87963a.js | AI (source-diff): Bundled webpack UI artifact, not true obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/548.793da35237bf9f418835.js | AI (source-diff): Bundled MDX/react output, not obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/901.de7688af53b97e5f1afb.js | AI (source-diff): Bundled bit workspace config artifact. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/901.de7688af53b97e5f1afb.js | AI (source-diff): Webpack runtime pattern, not a dropper. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/compositions.22768ae564063eaa86d9.js | AI (source-diff): Bundled UI artifact. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/overview.ba26215214b87ae8fbe6.js | AI (source-diff): Bundled UI artifact with regenerator-runtime, not obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/peers.282afc302bcc1a0fd55b.js | AI (source-diff): Bundled peer-exposure shim, not obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/peers.cee795b5436a97f764db.js | AI (source-diff): Standard webpack bundle for Bit component preview UI; not obfuscated malware. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/peers.cee795b5436a97f764db.js | AI (source-diff): Webpack bundle with __webpack_require__; network+exec pattern is benign module loading. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/232.b8dbd54bdfbb4317772d.js | AI (source-diff): Standard webpack bundle for Bit component preview UI; not obfuscated malware. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/403.603cc7b1a936a5cf2751.js | AI (source-diff): Standard webpack bundle for Bit component preview UI; not obfuscated malware. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/403.603cc7b1a936a5cf2751.js | AI (source-diff): Webpack bundle with __webpack_require__; network+exec pattern is benign module loading. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/492.22b0b0b3b19d3d98bc45.js | AI (source-diff): Standard webpack bundle for Bit component preview UI; not obfuscated malware. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/492.22b0b0b3b19d3d98bc45.js | AI (source-diff): Webpack bundle with __webpack_require__; network+exec pattern is benign module loading. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/compositions.8784b81acc95e9fcdc23.js | AI (source-diff): Standard webpack bundle for Bit component preview UI; not obfuscated malware. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/overview.cbed0854709b3ed833b6.js | AI (source-diff): Standard webpack bundle for Bit component preview UI; not obfuscated malware. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/peers.868fe58c3ba306356778.js | AI (source-diff): Webpack-minified UI preview artifact; standard pattern for @teambit packages. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/peers.868fe58c3ba306356778.js | AI (source-diff): Dynamic exec is webpack module loader pattern; no exfiltration or dropper behavior. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/244.884cb4f1ca408300f4ff.js | AI (source-diff): Webpack-minified UI preview artifact; standard pattern for @teambit packages. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/492.d8facb1bdcd23c4612dd.js | AI (source-diff): Webpack-minified UI preview artifact; standard pattern for @teambit packages. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/492.d8facb1bdcd23c4612dd.js | AI (source-diff): Network refs are static.bit.dev CDN URLs in config; dynamic exec is webpack module loader, not malware. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/541.3e2065c1d9de461ef814.js | AI (source-diff): Webpack-minified UI preview artifact; standard pattern for @teambit packages. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/541.3e2065c1d9de461ef814.js | AI (source-diff): Network refs are static.bit.dev CDN URLs in config; dynamic exec is webpack module loader, not malware. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/compositions.a6ee19d6b91dfdbad9ba.js | AI (source-diff): Webpack-minified UI preview artifact; standard pattern for @teambit packages. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/overview.681811e5e2f1bff81be9.js | AI (source-diff): Webpack-minified UI preview artifact; standard pattern for @teambit packages. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/254.848b21663dcb32f9874d.js | AI (source-diff): Webpack chunk with __webpack_require__ dynamic loading; not dropper malware, consistent with teambit UI bundle pattern. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/492.3b9c89426050c66b13d0.js | AI (source-diff): Webpack chunk with __webpack_require__; not dropper malware, consistent with teambit UI bundle pattern. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/compositions.a12f563682db89cc29f5.js | AI (source-diff): Standard webpack bundle chunk for teambit compositions preview. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/254.848b21663dcb32f9874d.js | AI (source-diff): Standard webpack bundle chunk; consistent with teambit's env-template artifact build pattern across all versions. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/overview.ba8918e747646f6b90f1.js | AI (source-diff): Standard webpack bundle chunk for teambit overview preview. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/peers.594ed643999ac304b48e.js | AI (source-diff): Standard webpack bundle chunk containing MDX/React peer libraries. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/peers.594ed643999ac304b48e.js | AI (source-diff): Webpack chunk with __webpack_require__; not dropper malware, consistent with teambit UI bundle pattern. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/492.3b9c89426050c66b13d0.js | AI (source-diff): Standard webpack bundle chunk containing floating-ui React library code. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/466.f9a87284e7c187e6f3fa.js | AI (source-diff): Standard webpack bundle chunk for teambit preview modules. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/553.616ef114bdea8ed4aba5.js | AI (source-diff): Standard webpack-minified frontend chunk in Bit's env-template preview; not obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/peers.78f01a0ed15854a976c8.js | AI (source-diff): Standard webpack-minified frontend chunk in Bit's env-template preview; not obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/overview.d440a48034b5938296de.js | AI (source-diff): Standard webpack-minified frontend chunk in Bit's env-template preview; not obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/compositions.9888eb383a8d27505848.js | AI (source-diff): Standard webpack-minified frontend chunk in Bit's env-template preview; not obfuscation. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/553.616ef114bdea8ed4aba5.js | AI (source-diff): Webpack bundle with __webpack_require__; network+exec pattern is normal for bundled UI code. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/492.6a591c3edb115fa70c83.js | AI (source-diff): Webpack bundle with __webpack_require__; network+exec pattern is normal for bundled UI code. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/492.6a591c3edb115fa70c83.js | AI (source-diff): Standard webpack-minified frontend chunk in Bit's env-template preview; not obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/peers.d8ac47b048788af41e37.js | AI (source-diff): Webpack peers bundle exposing React/MDX globals; minification expected. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/compositions.d9c62e3865f76adddeee.js | AI (source-diff): Webpack bundle for Bit preview modules; minification expected in build artifacts. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/overview.8cfea31c213d31d713dc.js | AI (source-diff): Webpack bundle for Bit overview preview; minification expected. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/peers.5f0610203333016e98be.js | AI (source-diff): Standard webpack bundle in Bit's env-template preview artifacts; not malicious obfuscation. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/492.69e02a95933f5b481922.js | AI (source-diff): webpack __webpack_require__ pattern in preview bundle; not a dropper/loader. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/compositions.65ae6b87278fc7babe29.js | AI (source-diff): Standard webpack bundle in Bit's env-template preview artifacts; not malicious obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/492.69e02a95933f5b481922.js | AI (source-diff): Standard webpack bundle in Bit's env-template preview artifacts; not malicious obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/overview.ac964626f7928b1b1650.js | AI (source-diff): Standard webpack bundle in Bit's env-template preview artifacts; not malicious obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/peers.0bfb56a73bbde8f897b5.js | AI (source-diff): Webpack-minified UI preview bundle; standard build artifact for @teambit packages. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/overview.3c76fd0c006884f4e5a7.js | AI (source-diff): Webpack-minified UI preview bundle; standard build artifact for @teambit packages. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/760.847613853bcbcc911626.js | AI (source-diff): Webpack-minified UI preview bundle; standard build artifact for @teambit packages. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/760.847613853bcbcc911626.js | AI (source-diff): Webpack bundle with __webpack_require__; not a dropper, standard module loader pattern. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/compositions.2430fd51bf303bb0c662.js | AI (source-diff): Webpack-minified UI preview bundle; standard build artifact for @teambit packages. | ai | |
| dependencies | unvetted-dep:@teambit/toolbox.path.path | AI (dependencies): Internal @teambit org sibling dep; consistent across versions of this package. | ai | |
| dependencies | unvetted-dep:@bitdev/symphony.generators.symphony-templates | AI (dependencies): Related @bitdev org dep used by teambit packages; stable pattern. | ai | |
| dependencies | unvetted-dep:@bitdev/symphony.generators.symphony-starters | AI (dependencies): Related @bitdev org dep used by teambit packages; stable pattern. | ai | |
| dependencies | unvetted-dep:@teambit/typescript.typescript-compiler | AI (dependencies): Internal @teambit org sibling dep; consistent across versions of this package. | ai | |
| dependencies | unvetted-dep:@teambit/defender.prettier-formatter | AI (dependencies): Internal @teambit org sibling dep; consistent across versions of this package. | ai | |
| dependencies | unvetted-dep:@teambit/compilation.babel-compiler | AI (dependencies): Internal @teambit org sibling dep; consistent across versions of this package. | ai | |
| dependencies | unvetted-dep:@teambit/defender.eslint-linter | AI (dependencies): Internal @teambit org sibling dep; consistent across versions of this package. | ai | |
| dependencies | unvetted-dep:@teambit/legacy.extension-data | AI (dependencies): Internal @teambit org sibling dep; consistent across versions of this package. | ai | |
| dependencies | unvetted-dep:@teambit/defender.tester-task | AI (dependencies): Internal @teambit org sibling dep; consistent across versions of this package. | ai | |
| dependencies | unvetted-dep:@teambit/defender.jest-tester | AI (dependencies): Internal @teambit org sibling dep; consistent across versions of this package. | ai | |
| dependencies | unvetted-dep:@teambit/legacy.constants | AI (dependencies): Internal @teambit org sibling dep; consistent across versions of this package. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/271.8983b12775e9c1379e11.js | AI (source-diff): Webpack-bundled preview chunk; standard Bit component preview artifact pattern. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/peers.0fde9d53c2a787efe0ef.js | AI (source-diff): Bit peer dependencies bundle; standard webpack build artifact exposing React/MDX globals. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/overview.99c1c1a101b118fff701.js | AI (source-diff): Bit preview overview chunk; standard webpack build artifact. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/compositions.31f2db8e52bdcfe00611.js | AI (source-diff): Bit preview compositions chunk; standard webpack build artifact. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/271.8983b12775e9c1379e11.js | AI (source-diff): Webpack chunk with __webpack_require__ dynamic loading; not dropper malware. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/peers.e5f300c4acdbaee5d4be.js | AI (source-diff): Webpack bundle exposing React/MDX peer deps to global scope for Bit preview; benign and expected pattern. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/overview.1cd2d7564d53fe1c7814.js | AI (source-diff): Standard webpack-bundled preview artifact for Bit's env-template system; consistent pattern across all versions. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/compositions.945b8e6f02ba5dc59a1f.js | AI (source-diff): Standard webpack-bundled preview artifact for Bit's env-template system; consistent pattern across all versions. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/911.a18d7d9a37bb3e0ec95c.js | AI (source-diff): Webpack chunk loader pattern; network+exec pattern is from bundled UI code, not dropper malware. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/compositions.d539161476046c68d917.js | AI (source-diff): Standard webpack bundle for Bit env-template preview; not malicious obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/overview.027b210f08747d377690.js | AI (source-diff): Standard webpack bundle for Bit env-template preview; not malicious obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/492.7c3761433796ef60e91c.js | AI (source-diff): Standard webpack bundle for Bit env-template preview; not malicious obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/peers.99eb798ab8791fcf44fa.js | AI (source-diff): Standard webpack bundle for Bit env-template preview; not malicious obfuscation. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/492.7c3761433796ef60e91c.js | AI (source-diff): Webpack chunk loader pattern; network+exec pattern is from bundled UI code, not dropper malware. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/911.a18d7d9a37bb3e0ec95c.js | AI (source-diff): Standard webpack bundle for Bit env-template preview; not malicious obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/492.196589abe38b081357b1.js | AI (source-diff): Standard webpack bundle (floating-ui/React); not malicious obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/peers.e74a82acb0e7fa3adc96.js | AI (source-diff): Standard webpack bundle exposing React/MDX peer globals; not malicious obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/overview.9b2f721962f04f1a1dcc.js | AI (source-diff): Standard webpack bundle with regenerator-runtime; not malicious obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/compositions.743f64e4a6c7cebaa07b.js | AI (source-diff): Standard webpack bundle for Bit preview modules; not malicious obfuscation. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/492.196589abe38b081357b1.js | AI (source-diff): Webpack chunk with __webpack_require__; expected pattern for Bit preview bundles. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/372.747516dd003c8cd1f1c0.js | AI (source-diff): Webpack chunk with __webpack_require__ dynamic loading; expected pattern for Bit preview bundles. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/372.747516dd003c8cd1f1c0.js | AI (source-diff): Standard webpack bundle for Bit's env-template preview UI; not malicious obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/peers.089d80113b166fcc7c92.js | AI (source-diff): Standard webpack bundle artifact in Bit's env-template preview; not malicious obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/overview.66ad498a89e4e6547c87.js | AI (source-diff): Standard webpack bundle artifact in Bit's env-template preview; not malicious obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/compositions.93b817effcce2f50b827.js | AI (source-diff): Standard webpack bundle artifact in Bit's env-template preview; not malicious obfuscation. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/compositions.eb92533d0ba14b07174b.js | AI (source-diff): Webpack-bundled frontend preview asset; minification is expected for this package's env-template artifacts. | ai | |
| source-diff | net-exec-file:artifacts/env-template/public/382.565b03c5d3748e06fc46.js | AI (source-diff): Network+exec pattern is webpack module loader boilerplate in a browser preview bundle, not dropper malware. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/382.565b03c5d3748e06fc46.js | AI (source-diff): Webpack-bundled frontend preview asset; minification is expected for this package's env-template artifacts. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/peers.422a7d8edf93ed9ae5f8.js | AI (source-diff): Webpack-bundled frontend preview asset; minification is expected for this package's env-template artifacts. | ai | |
| source-diff | obfuscated-file:artifacts/env-template/public/overview.812e636dbaca23c00bf6.js | AI (source-diff): Webpack-bundled frontend preview asset; minification is expected for this package's env-template artifacts. | ai | |
| phantom-deps | phantom-dep:@teambit/isolator | AI (phantom-deps): Same-org phantom dep in a large monorepo; stable false positive for this package. | ai | |
| npm-metadata | no-description | AI (npm-metadata): Established teambit package; missing description is cosmetic, not a risk signal here. | ai | |
| semgrep | semgrep:new-function-constructor | AI (semgrep): Fires in a webpack bundle artifact; standard webpack runtime pattern for this build toolchain. | ai | |
| phantom-deps | phantom-dep:@teambit/defender.tester-task | AI (phantom-deps): Same-org phantom dep in a large monorepo; stable false positive for this package. | ai | |
| phantom-deps | phantom-dep:@teambit/typescript | AI (phantom-deps): Same-org phantom dep in a large monorepo; stable false positive for this package. | ai |
Versions (showing 51 of 53)
| Version | Deps | Published |
|---|---|---|
| 1.0.1070 | 56 / 3 | |
| 1.0.1064 | 56 / 3 | |
| 1.0.1060 | 56 / 3 | |
| 1.0.1052 | 56 / 3 | |
| 1.0.1051 | 56 / 3 | |
| 1.0.1021 | 56 / 3 | |
| 1.0.1013 | 56 / 3 | |
| 1.0.1005 | 56 / 3 | |
| 1.0.1003 | 56 / 3 | |
| 1.0.999 | 56 / 3 | |
| 1.0.996 | 56 / 3 | |
| 1.0.991 | 56 / 3 | |
| 1.0.990 | 56 / 3 | |
| 1.0.989 | 56 / 3 | |
| 1.0.988 | 56 / 3 | |
| 1.0.986 | 56 / 3 | |
| 1.0.981 | 56 / 3 | |
| 1.0.979 | 56 / 3 | |
| 1.0.976 | 56 / 3 | |
| 1.0.974 | 56 / 3 | |
| 1.0.972 | 56 / 3 | |
| 1.0.971 | 56 / 3 | |
| 1.0.970 | 56 / 3 | |
| 1.0.969 | 56 / 3 | |
| 1.0.968 | 56 / 3 | |
| 1.0.967 | 56 / 3 | |
| 1.0.964 | 56 / 3 | |
| 1.0.962 | 56 / 3 | |
| 1.0.960 | 56 / 3 | |
| 1.0.958 | 56 / 3 | |
| 1.0.955 | 56 / 3 | |
| 1.0.942 | 56 / 3 | |
| 1.0.939 | 56 / 3 | |
| 1.0.936 | 56 / 3 | |
| 1.0.935 | 56 / 3 | |
| 1.0.933 | 56 / 3 | |
| 1.0.928 | 56 / 3 | |
| 1.0.926 | 56 / 3 | |
| 1.0.867 | 56 / 3 | |
| 1.0.825 | 55 / 3 | |
| 1.0.797 | 55 / 3 | |
| 1.0.629 | 55 / 3 | |
| 1.0.628 | 55 / 3 | |
| 1.0.622 | 55 / 3 | |
| 1.0.620 | 55 / 3 | |
| 1.0.613 | 55 / 3 | |
| 1.0.565 | 55 / 3 | |
| 1.0.539 | 55 / 3 | |
| 1.0.530 | 55 / 3 | |
| 1.0.523 | 55 / 3 | |
| 1.0.522 | 55 / 3 |
v1.0.1070
10 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — minified bundler output, not obfuscation on its own.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — minified bundler output, not obfuscation on its own.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1064
10 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — minified bundler output, not obfuscation on its own.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — minified bundler output, not obfuscation on its own.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1060
8 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — minified bundler output, not obfuscation on its own.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — minified bundler output, not obfuscation on its own.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1052
10 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — minified bundler output, not obfuscation on its own.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — minified bundler output, not obfuscation on its own.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1051
10 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — minified bundler output, not obfuscation on its own.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — minified bundler output, not obfuscation on its own.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.976
8 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — minified bundler output, not obfuscation on its own.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — minified bundler output, not obfuscation on its own.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.974
6 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — minified bundler output, not obfuscation on its own.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — minified bundler output, not obfuscation on its own.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.867
9 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — minified bundler output, not obfuscation on its own.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — minified bundler output, not obfuscation on its own.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.825
9 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — minified bundler output, not obfuscation on its own.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — minified bundler output, not obfuscation on its own.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.797
9 findingsNewly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — bundler banner in the scanned head, but the file is larger than the scan window and its remainder is unclassified, so this is not a clean bill of health.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — minified bundler output, not obfuscation on its own.
Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator. Artifact: bundled (webpack) — minified bundler output, not obfuscation on its own.
Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.565
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.0.539
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.0.530
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.0.523
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.
v1.0.522
1 findingPackage was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.