← Home

porto

51
Versions
License
No
Install Scripts
Missing
Provenance

Supply chain provenance

Status for the latest visible version.

No SLSA provenance npm registry signatures No source commit

Without SLSA provenance there is no cryptographic link between this tarball and the public source — the axios compromise (March 2026) relied on exactly this gap.

Maintainers

jmoxeyawkweb

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
source-diff obfuscated-file:_dist/cli/bin/commands-Bvfozyjx.js AI (source-diff): Minified CLI commands bundle with standard Ethereum libs. ai
source-diff obfuscated-file:dist/cli/bin/commands-DYlZQB2D.js AI (source-diff): Minified CLI bundle with readable imports from viem/ox/zod; standard build output. ai
source-diff obfuscated-file:_dist/cli/bin/commands-nAk7Ef5g.js AI (source-diff): Bundled/minified CLI output containing standard Ethereum library code. ai
source-diff obfuscated-file:dist/cli/bin/commands-BSxU9jsM.js AI (source-diff): Minified CLI bundle with readable imports from viem/ox; standard build output. ai
source-diff obfuscated-file:_dist/cli/bin/commands-2HGh31Xc.js AI (source-diff): Minified CLI commands bundle; standard dist output. ai
source-diff obfuscated-file:_dist/cli/bin/commands-CjAJGaST.js AI (source-diff): Minified CLI bundle of viem/wagmi Ethereum libs; not obfuscated malware. ai
source-diff obfuscated-file:_dist/cli/bin/commands-BjdhZ6M_.js AI (source-diff): Minified CLI bundle chunk; readable crypto/ABI utility code. ai
source-diff obfuscated-file:_dist/cli/bin/commands-df9_AMtj.js AI (source-diff): Minified CLI bundle of web3 libraries; stable pattern for this package. ai
source-diff obfuscated-file:_dist/cli/bin/commands-CItPIxXB.js AI (source-diff): Minified CLI commands bundle; standard dist output for this package. ai
source-diff obfuscated-file:_dist/cli/bin/commands-BNOLf0S1.js AI (source-diff): Minified CLI commands bundle; standard dist output for this package. ai
source-diff obfuscated-file:_dist/cli/bin/commands-BbV4F0-W.js AI (source-diff): Minified CLI commands bundle; standard dist output. ai
source-diff encoded-string-file:_dist/core/internal/_generated/contracts/LibTStack.js AI (source-diff): EVM bytecode hex strings in generated contract files; expected. ai
source-diff encoded-string-file:_dist/core/internal/_generated/contracts/LibNonce.js AI (source-diff): EVM bytecode hex strings in generated contract files; expected. ai
source-diff encoded-string-file:_dist/core/internal/_generated/contracts/IthacaAccountOld.js AI (source-diff): EVM bytecode hex strings in generated contract files; expected. ai
source-diff obfuscated-file:dist/cli/bin/commands-CgVWGHZk.js AI (source-diff): Bundled CLI output with readable imports from viem/ox/zod; minified, not obfuscated. ai
source-diff obfuscated-file:_dist/cli/bin/commands-DjLwe7TL.js AI (source-diff): Minified build output for CLI bundle; readable imports, no obfuscation intent. ai
source-diff obfuscated-file:core/internal/_generated/contracts/IthacaAccountOld.ts AI (source-diff): Source TS for generated ABI. ai
source-diff obfuscated-file:_dist/cli/index.js AI (source-diff): Bundled CLI entry point with standard ESM imports; not obfuscated. ai
source-diff obfuscated-file:_dist/core/internal/_generated/contracts/IthacaAccount.d.ts AI (source-diff): TypeScript declaration for generated ABI; long lines expected. ai
source-diff obfuscated-file:_dist/core/internal/_generated/contracts/IthacaAccountOld.d.ts AI (source-diff): TypeScript declaration for generated ABI. ai
source-diff obfuscated-file:core/internal/_generated/contracts/IthacaAccountNew.ts AI (source-diff): Source TS for generated ABI. ai
source-diff obfuscated-file:core/internal/_generated/contracts/IthacaAccount.ts AI (source-diff): Source TS for generated ABI. ai
source-diff obfuscated-file:_dist/core/internal/_generated/contracts/IthacaAccountNew.d.ts AI (source-diff): TypeScript declaration for generated ABI. ai
source-diff obfuscated-file:_dist/cli/bin/commands-eJZMMmvr.js AI (source-diff): Minified CLI bundle with crypto/chain imports; stable pattern. ai
source-diff obfuscated-file:dist/core/internal/_generated/contracts/IthacaAccount.js AI (source-diff): Generated Solidity ABI JSON export; long lines from ABI structure, not obfuscation. ai
source-diff obfuscated-file:dist/wagmi/Connector.js AI (source-diff): Fully readable wagmi connector source; long lines from formatting, not obfuscation. ai
source-diff obfuscated-file:dist/cli/bin/commands-P_qgWG6c.js AI (source-diff): Bundled CLI entry point from tsdown; imports are readable and from known packages (viem, ox, zod). ai
publish-pattern dormant-publish AI (publish-pattern): Project underwent major rewrite (0.0.x → 0.2.x); publisher is established with strong track record. ai
source-diff obfuscated-file:dist/cli/bin/index.js AI (source-diff): Bundled CLI bin entry; minified arg parser, standard for CLI tools. ai
source-diff obfuscated-file:_dist/cli/bin/commands-lx7ZbF_n.js AI (source-diff): Minified CLI command bundle with standard Web3 imports; not obfuscated. ai
source-diff obfuscated-file:_dist/cli/bin/commands-CeA5KqnN.js AI (source-diff): Minified CLI commands bundle; standard build output. ai
source-diff obfuscated-file:_dist/core/internal/_generated/contracts/SimpleFunder.js AI (source-diff): Generated Solidity ABI JSON; long lines are inherent to ABI format. ai
source-diff obfuscated-file:_dist/cli/bin/_u64-6l0cDDeg.js AI (source-diff): Minified crypto utility bundle (noble-hashes); standard for CLI dist output. ai
source-diff obfuscated-file:_dist/cli/bin/ccip-jUWVqn3s.js AI (source-diff): Minified viem CCIP module; standard CLI dist bundle. ai
source-diff obfuscated-file:_dist/cli/bin/commands-BSErZ1E7.js AI (source-diff): Minified CLI commands bundle; standard build output. ai
source-diff obfuscated-file:_dist/cli/bin/isAddressEqual-Cn6dtToW.js AI (source-diff): Minified viem address utilities; standard CLI dist bundle. ai
source-diff obfuscated-file:_dist/cli/bin/secp256k1-CU2I1k8O.js AI (source-diff): Minified secp256k1/SHA crypto bundle; standard CLI dist output. ai
source-diff obfuscated-file:_dist/core/internal/_generated/contracts/Escrow.js AI (source-diff): Generated Solidity ABI JSON; long lines are inherent to ABI format. ai
source-diff obfuscated-file:_dist/core/internal/_generated/contracts/LayerZeroSettler.js AI (source-diff): Generated Solidity ABI JSON; long lines are inherent to ABI format. ai
source-diff obfuscated-file:_dist/core/internal/_generated/contracts/SimpleSettler.js AI (source-diff): Generated Solidity ABI JSON; long lines are inherent to ABI format. ai
source-diff obfuscated-file:_dist/core/internal/_generated/contracts/Escrow.d.ts AI (source-diff): Generated ABI type declarations; long lines from ABI structure. ai
source-diff obfuscated-file:core/internal/_generated/contracts/Escrow.ts AI (source-diff): Generated ABI source; long lines from ABI structure. ai
source-diff obfuscated-file:_dist/core/internal/_generated/contracts/LayerZeroSettler.d.ts AI (source-diff): Generated ABI type declarations. ai
source-diff obfuscated-file:core/internal/_generated/contracts/LayerZeroSettler.ts AI (source-diff): Generated ABI source. ai
source-diff obfuscated-file:_dist/core/internal/_generated/contracts/SimpleFunder.d.ts AI (source-diff): Generated ABI type declarations. ai
source-diff obfuscated-file:core/internal/_generated/contracts/SimpleFunder.ts AI (source-diff): Generated ABI source. ai
source-diff obfuscated-file:_dist/core/internal/_generated/contracts/SimpleSettler.d.ts AI (source-diff): Generated ABI type declarations. ai
source-diff obfuscated-file:core/internal/_generated/contracts/SimpleSettler.ts AI (source-diff): Generated ABI source. ai
source-diff encoded-string-file:_dist/core/internal/_generated/contracts/EIP7702Proxy.js AI (source-diff): EVM bytecode in generated contract ABI; standard for web3 SDKs. ai
source-diff encoded-string-file:_dist/core/internal/_generated/contracts/IthacaAccount.js AI (source-diff): EVM bytecode in generated contract ABI. ai
source-diff encoded-string-file:_dist/core/internal/_generated/contracts/IthacaAccountNew.js AI (source-diff): EVM bytecode in generated contract ABI. ai
source-diff obfuscated-file:_dist/cli/bin/commands-CmWp_2mX.js AI (source-diff): Minified CLI bundle of crypto/viem utilities; standard build output. ai
source-diff obfuscated-file:_dist/cli/bin/commands-IChwfbCN.js AI (source-diff): Minified CLI bundle of Web3 libs; not obfuscated malware. ai
source-diff obfuscated-file:_dist/cli/bin/secp256k1-YiF5HFSI.js AI (source-diff): Bundled noble-curves secp256k1; standard minified build output. ai
source-diff obfuscated-file:_dist/cli/bin/isAddressEqual-DH_X19Gd.js AI (source-diff): Bundled viem/abitype utilities; standard minified build output. ai
source-diff obfuscated-file:_dist/cli/bin/commands-B7hligtA.js AI (source-diff): Bundled CLI commands chunk; standard minified build output. ai
source-diff obfuscated-file:_dist/cli/bin/utils-BSqirLz_.js AI (source-diff): Bundled noble-hashes utilities; standard minified build output. ai
source-diff obfuscated-file:_dist/cli/bin/ccip-CDlUBDBe.js AI (source-diff): Bundled viem CCIP module; standard minified build output. ai
source-diff obfuscated-file:_dist/cli/bin/isAddressEqual-Dm2GMOHr.js AI (source-diff): Minified CLI chunk; crypto/hash utility code visible in sample. ai
source-diff obfuscated-file:_dist/cli/bin/ccip-CaBRSOy6.js AI (source-diff): Minified CLI bundle output; standard viem imports visible in sample. ai
source-diff obfuscated-file:_dist/cli/bin/utils-CRyEb-ok.js AI (source-diff): Minified CLI chunk; standard noble-hashes utility code visible. ai
source-diff obfuscated-file:_dist/cli/bin/secp256k1-DJ8aJpkH.js AI (source-diff): Minified CLI chunk; noble-crypto hash/secp256k1 code visible. ai
source-diff obfuscated-file:_dist/core/internal/_generated/contracts/IthacaAccount.js AI (source-diff): Generated Solidity ABI JSON; long lines from structured data. ai
source-diff obfuscated-file:_dist/cli/bin/isAddressEqual-DQ_eu4EC.js AI (source-diff): Bundled viem chunk; minified but readable imports. ai
source-diff obfuscated-file:_dist/cli/bin/index.js AI (source-diff): Bundled CLI entry point; minified viem/ethers code. ai
source-diff obfuscated-file:_dist/cli/bin/ccip-BxVcELKr.js AI (source-diff): Bundled/minified CLI output from viem; standard for this Ethereum SDK. ai
source-diff obfuscated-file:_dist/cli/bin/utils-ClG9dtFR.js AI (source-diff): Bundled utility chunk from noble-hashes/viem. ai
source-diff obfuscated-file:_dist/cli/bin/secp256k1-DlL48JMU.js AI (source-diff): Bundled noble-secp256k1 crypto chunk; standard for Ethereum SDKs. ai
source-diff obfuscated-file:_dist/core/internal/_generated/contracts/IthacaFactory.js AI (source-diff): Generated Solidity ABI JSON. ai
source-diff obfuscated-file:_dist/core/internal/_generated/contracts/IthacaAccountOld.js AI (source-diff): Generated Solidity ABI JSON. ai
source-diff obfuscated-file:_dist/core/internal/_generated/contracts/IthacaAccountNew.js AI (source-diff): Generated Solidity ABI JSON. ai
source-diff large-new-source-files AI (source-diff): Active Ethereum SDK with generated contracts and bundled CLI; large diffs expected. ai
source-diff encoded-string-file:_dist/core/internal/_generated/contracts/Orchestrator.js AI (source-diff): Contract bytecode in generated ABI file. ai
source-diff encoded-string-file:_dist/core/internal/_generated/contracts/MultiSigSigner.js AI (source-diff): Contract bytecode in generated ABI file. ai
source-diff encoded-string-file:_dist/core/internal/_generated/contracts/ExperimentERC721.js AI (source-diff): Contract bytecode in generated ABI file. ai
source-diff encoded-string-file:_dist/core/internal/_generated/contracts/ExperimentERC20.js AI (source-diff): Contract bytecode in generated ABI file. ai
source-diff encoded-string-file:core/internal/call.test.ts AI (source-diff): Hex-encoded Ethereum ABI calldata in test snapshots; expected for this web3 package. ai
semgrep semgrep:shady-links-raw-ip AI (semgrep): Fires on minified UI/event-listener code, not an actual HTTP request to a raw IP. ai
dependencies unvetted-dep:ox AI (dependencies): ox is a well-known Ethereum primitive library from the viem/wagmi ecosystem; stable dependency for this package. ai
semgrep semgrep:shady-links-tlds AI (semgrep): ithaca.xyz is the package's own homepage/WebAuthn origin; not C2 or exfiltration. ai
semgrep semgrep:new-function-constructor AI (semgrep): Fires in a test file as a dummy value, not production code; stable false positive for this package. ai

Versions (showing 51 of 53)

View all versions
Version Deps Published
0.2.37 6 / 0
0.2.28 6 / 0
0.2.27 6 / 0
0.2.26 6 / 0
0.2.25 6 / 0
0.0.72 6 / 0
0.0.71 6 / 0
0.0.70 6 / 0
0.0.69 6 / 0
0.0.68 6 / 0
0.0.67 6 / 0
0.0.66 6 / 0
0.0.65 6 / 0
0.0.64 6 / 0
0.0.63 6 / 0
0.0.62 6 / 0
0.0.61 6 / 0
0.0.60 6 / 0
0.0.59 6 / 0
0.0.57 6 / 0
0.0.56 6 / 0
0.0.55 6 / 0
0.0.54 6 / 0
0.0.53 6 / 0
0.0.52 6 / 0
0.0.51 6 / 0
0.0.50 6 / 0
0.0.49 6 / 0
0.0.48 6 / 0
0.0.47 6 / 0
0.0.46 6 / 0
0.0.45 6 / 0
0.0.43 6 / 0
0.0.42 6 / 0
0.0.41 6 / 0
0.0.40 6 / 0
0.0.39 6 / 0
0.0.38 6 / 0
0.0.37 6 / 0
0.0.36 6 / 0
0.0.35 6 / 0
0.0.34 6 / 0
0.0.33 6 / 0
0.0.32 6 / 0
0.0.31 6 / 0
0.0.30 5 / 0
0.0.29 5 / 0
0.0.28 5 / 0
0.0.27 5 / 0
0.0.26 5 / 0
0.0.25 5 / 0

v0.2.37

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v0.2.28

5 findings
HIGH New obfuscated file: dist/cli/bin/commands-CgVWGHZk.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/wagmi/Connector.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/cli/bin/index.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/core/internal/_generated/contracts/IthacaAccount.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.2.27

5 findings
HIGH New obfuscated file: dist/cli/bin/commands-BSxU9jsM.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/wagmi/Connector.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/cli/bin/index.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/core/internal/_generated/contracts/IthacaAccount.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.2.26

5 findings
HIGH New obfuscated file: dist/cli/bin/commands-DYlZQB2D.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/wagmi/Connector.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/cli/bin/index.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/core/internal/_generated/contracts/IthacaAccount.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.2.25

5 findings
HIGH New obfuscated file: dist/cli/bin/commands-P_qgWG6c.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/wagmi/Connector.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/cli/bin/index.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: dist/core/internal/_generated/contracts/IthacaAccount.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.72

19 findings
HIGH New obfuscated file: _dist/cli/bin/_u64-6l0cDDeg.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/ccip-jUWVqn3s.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/commands-CItPIxXB.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/Escrow.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/isAddressEqual-Cn6dtToW.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/LayerZeroSettler.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/secp256k1-CU2I1k8O.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/SimpleFunder.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/SimpleSettler.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/Escrow.d.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: core/internal/_generated/contracts/Escrow.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/EIP7702Proxy.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC20.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC721.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/IthacaAccount.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/IthacaAccountNew.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/IthacaAccountOld.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/LibNonce.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.71

19 findings
HIGH New obfuscated file: _dist/cli/bin/_u64-6l0cDDeg.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/ccip-jUWVqn3s.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/commands-BNOLf0S1.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/Escrow.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/isAddressEqual-Cn6dtToW.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/LayerZeroSettler.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/secp256k1-CU2I1k8O.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/SimpleFunder.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/SimpleSettler.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/Escrow.d.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: core/internal/_generated/contracts/Escrow.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/EIP7702Proxy.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC20.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC721.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/IthacaAccount.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/IthacaAccountNew.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/IthacaAccountOld.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/LibNonce.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.70

20 findings
HIGH New obfuscated file: _dist/cli/bin/_u64-6l0cDDeg.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/ccip-jUWVqn3s.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/commands-BbV4F0-W.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/Escrow.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/isAddressEqual-Cn6dtToW.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/LayerZeroSettler.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/secp256k1-CU2I1k8O.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/SimpleFunder.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/SimpleSettler.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/Escrow.d.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: core/internal/_generated/contracts/Escrow.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/EIP7702Proxy.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC20.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC721.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/IthacaAccount.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/IthacaAccountNew.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/IthacaAccountOld.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/LibNonce.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/LibTStack.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.69

20 findings
HIGH New obfuscated file: _dist/cli/bin/_u64-6l0cDDeg.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/ccip-jUWVqn3s.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/commands-2HGh31Xc.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/Escrow.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/isAddressEqual-Cn6dtToW.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/LayerZeroSettler.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/secp256k1-CU2I1k8O.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/SimpleFunder.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/SimpleSettler.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/Escrow.d.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: core/internal/_generated/contracts/Escrow.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/EIP7702Proxy.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC20.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC721.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/IthacaAccount.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/IthacaAccountNew.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/IthacaAccountOld.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/LibNonce.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/LibTStack.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.68

26 findings
HIGH New obfuscated file: _dist/cli/bin/_u64-6l0cDDeg.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/ccip-jUWVqn3s.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/commands-BZoNnEhM.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/Escrow.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/isAddressEqual-Cn6dtToW.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/LayerZeroSettler.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/secp256k1-CU2I1k8O.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/SimpleFunder.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/SimpleSettler.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/Escrow.d.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: core/internal/_generated/contracts/Escrow.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/LayerZeroSettler.d.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: core/internal/_generated/contracts/LayerZeroSettler.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/SimpleFunder.d.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: core/internal/_generated/contracts/SimpleFunder.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/SimpleSettler.d.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: core/internal/_generated/contracts/SimpleSettler.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/EIP7702Proxy.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC20.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC721.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/IthacaAccount.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/IthacaAccountNew.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/IthacaAccountOld.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/LibNonce.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/LibTStack.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.67

26 findings
HIGH New obfuscated file: _dist/cli/bin/_u64-6l0cDDeg.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/ccip-jUWVqn3s.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/commands-BZoNnEhM.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/Escrow.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/isAddressEqual-Cn6dtToW.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/LayerZeroSettler.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/secp256k1-CU2I1k8O.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/SimpleFunder.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/SimpleSettler.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/Escrow.d.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: core/internal/_generated/contracts/Escrow.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/LayerZeroSettler.d.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: core/internal/_generated/contracts/LayerZeroSettler.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/SimpleFunder.d.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: core/internal/_generated/contracts/SimpleFunder.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/SimpleSettler.d.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: core/internal/_generated/contracts/SimpleSettler.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/EIP7702Proxy.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC20.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC721.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/IthacaAccount.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/IthacaAccountNew.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/IthacaAccountOld.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/LibNonce.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/LibTStack.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.66

26 findings
HIGH New obfuscated file: _dist/cli/bin/_u64-6l0cDDeg.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/ccip-jUWVqn3s.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/commands-BZoNnEhM.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/Escrow.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/isAddressEqual-Cn6dtToW.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/LayerZeroSettler.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/secp256k1-CU2I1k8O.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/SimpleFunder.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/SimpleSettler.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/Escrow.d.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: core/internal/_generated/contracts/Escrow.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/LayerZeroSettler.d.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: core/internal/_generated/contracts/LayerZeroSettler.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/SimpleFunder.d.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: core/internal/_generated/contracts/SimpleFunder.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/SimpleSettler.d.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: core/internal/_generated/contracts/SimpleSettler.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/EIP7702Proxy.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC20.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC721.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/IthacaAccount.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/IthacaAccountNew.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/IthacaAccountOld.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/LibNonce.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/LibTStack.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.65

24 findings
HIGH New obfuscated file: _dist/cli/bin/_u64-6l0cDDeg.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/ccip-jUWVqn3s.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/commands-BSErZ1E7.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/Escrow.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/isAddressEqual-Cn6dtToW.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/LayerZeroSettler.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/secp256k1-CU2I1k8O.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/SimpleFunder.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/SimpleSettler.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/Escrow.d.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: core/internal/_generated/contracts/Escrow.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/LayerZeroSettler.d.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: core/internal/_generated/contracts/LayerZeroSettler.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/SimpleFunder.d.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: core/internal/_generated/contracts/SimpleFunder.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/SimpleSettler.d.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: core/internal/_generated/contracts/SimpleSettler.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/EIP7702Proxy.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/IthacaAccount.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/IthacaAccountNew.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/IthacaAccountOld.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/LibNonce.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/LibTStack.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.64

25 findings
HIGH New obfuscated file: _dist/cli/bin/_u64-6l0cDDeg.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/ccip-jUWVqn3s.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/commands-CeA5KqnN.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/Escrow.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/isAddressEqual-Cn6dtToW.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/LayerZeroSettler.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/secp256k1-CU2I1k8O.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/SimpleFunder.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/SimpleSettler.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/Escrow.d.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: core/internal/_generated/contracts/Escrow.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/LayerZeroSettler.d.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: core/internal/_generated/contracts/LayerZeroSettler.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/SimpleFunder.d.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: core/internal/_generated/contracts/SimpleFunder.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/SimpleSettler.d.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: core/internal/_generated/contracts/SimpleSettler.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/EIP7702Proxy.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/IthacaAccount.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/IthacaAccountNew.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/IthacaAccountOld.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/LibNonce.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/LibTStack.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/MultiSigSigner.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.63

6 findings
HIGH New obfuscated file: _dist/cli/bin/ccip-CDlUBDBe.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/commands-lx7ZbF_n.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/isAddressEqual-DH_X19Gd.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/secp256k1-YiF5HFSI.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/utils-BSqirLz_.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.62

6 findings
HIGH New obfuscated file: _dist/cli/bin/ccip-CDlUBDBe.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/commands-BjdhZ6M_.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/isAddressEqual-DH_X19Gd.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/secp256k1-YiF5HFSI.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/utils-BSqirLz_.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.61

6 findings
HIGH New obfuscated file: _dist/cli/bin/ccip-CDlUBDBe.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/commands-CmWp_2mX.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/isAddressEqual-DH_X19Gd.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/secp256k1-YiF5HFSI.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/utils-BSqirLz_.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.60

6 findings
HIGH New obfuscated file: _dist/cli/bin/ccip-CDlUBDBe.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/commands-eJZMMmvr.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/isAddressEqual-DH_X19Gd.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/secp256k1-YiF5HFSI.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/utils-BSqirLz_.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.59

6 findings
HIGH New obfuscated file: _dist/cli/bin/ccip-CDlUBDBe.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/commands-Bvfozyjx.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/isAddressEqual-DH_X19Gd.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/secp256k1-YiF5HFSI.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/utils-BSqirLz_.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.57

6 findings
HIGH New obfuscated file: _dist/cli/bin/ccip-CDlUBDBe.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/commands-df9_AMtj.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/isAddressEqual-DH_X19Gd.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/secp256k1-YiF5HFSI.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/utils-BSqirLz_.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.56

6 findings
HIGH New obfuscated file: _dist/cli/bin/ccip-CDlUBDBe.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/commands-B7hligtA.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/isAddressEqual-DH_X19Gd.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/secp256k1-YiF5HFSI.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/utils-BSqirLz_.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.55

6 findings
HIGH New obfuscated file: _dist/cli/bin/ccip-CDlUBDBe.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/commands-CjAJGaST.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/isAddressEqual-DH_X19Gd.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/secp256k1-YiF5HFSI.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/utils-BSqirLz_.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.54

6 findings
HIGH New obfuscated file: _dist/cli/bin/ccip-CDlUBDBe.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/commands-IChwfbCN.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/isAddressEqual-DH_X19Gd.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/secp256k1-YiF5HFSI.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/utils-BSqirLz_.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.53

6 findings
HIGH New obfuscated file: _dist/cli/bin/ccip-CDlUBDBe.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/commands-nAk7Ef5g.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/isAddressEqual-DH_X19Gd.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/secp256k1-YiF5HFSI.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/utils-BSqirLz_.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.52

6 findings
HIGH New obfuscated file: _dist/cli/bin/ccip-CDlUBDBe.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/commands-DjLwe7TL.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/isAddressEqual-DH_X19Gd.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/secp256k1-YiF5HFSI.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/utils-BSqirLz_.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.51

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.50

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.49

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.48

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v0.0.47

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.46

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.45

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v0.0.43

14 findings
HIGH New obfuscated file: _dist/cli/bin/ccip-BxVcELKr.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/index.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/isAddressEqual-DQ_eu4EC.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccount.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccountNew.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccountOld.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaFactory.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/secp256k1-DlL48JMU.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/utils-ClG9dtFR.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC20.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC721.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/MultiSigSigner.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/Orchestrator.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.42

14 findings
HIGH New obfuscated file: _dist/cli/bin/ccip-BxVcELKr.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/index.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/isAddressEqual-DQ_eu4EC.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccount.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccountNew.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccountOld.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaFactory.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/secp256k1-DlL48JMU.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/utils-ClG9dtFR.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC20.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC721.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/MultiSigSigner.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/Orchestrator.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.41

14 findings
HIGH New obfuscated file: _dist/cli/bin/ccip-BxVcELKr.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/index.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/isAddressEqual-DQ_eu4EC.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccount.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccountNew.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccountOld.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaFactory.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/secp256k1-DlL48JMU.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/utils-ClG9dtFR.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC20.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC721.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/MultiSigSigner.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/Orchestrator.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.40

14 findings
HIGH New obfuscated file: _dist/cli/bin/ccip-BxVcELKr.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/index.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/isAddressEqual-DQ_eu4EC.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccount.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccountNew.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccountOld.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaFactory.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/secp256k1-DlL48JMU.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/utils-ClG9dtFR.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC20.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC721.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/MultiSigSigner.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/Orchestrator.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.39

14 findings
HIGH New obfuscated file: _dist/cli/bin/ccip-BxVcELKr.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/index.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/isAddressEqual-DQ_eu4EC.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccount.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccountNew.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccountOld.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaFactory.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/secp256k1-DlL48JMU.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/utils-ClG9dtFR.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC20.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC721.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/MultiSigSigner.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/Orchestrator.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.38

14 findings
HIGH New obfuscated file: _dist/cli/bin/ccip-BxVcELKr.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/index.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/isAddressEqual-DQ_eu4EC.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccount.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccountNew.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccountOld.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaFactory.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/secp256k1-DlL48JMU.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/utils-ClG9dtFR.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC20.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC721.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/MultiSigSigner.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/Orchestrator.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.37

14 findings
HIGH New obfuscated file: _dist/cli/bin/ccip-BxVcELKr.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/index.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/isAddressEqual-DQ_eu4EC.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccount.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccountNew.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccountOld.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaFactory.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/secp256k1-DlL48JMU.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/utils-ClG9dtFR.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC20.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC721.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/MultiSigSigner.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/Orchestrator.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.36

13 findings
HIGH New obfuscated file: _dist/cli/bin/ccip-BxVcELKr.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/index.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/isAddressEqual-DQ_eu4EC.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccount.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccountNew.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccountOld.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/secp256k1-DlL48JMU.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/utils-ClG9dtFR.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC20.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC721.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/MultiSigSigner.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/Orchestrator.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.35

13 findings
HIGH New obfuscated file: _dist/cli/bin/ccip-BxVcELKr.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/index.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/isAddressEqual-DQ_eu4EC.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccount.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccountNew.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccountOld.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/secp256k1-DlL48JMU.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/utils-ClG9dtFR.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC20.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC721.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/MultiSigSigner.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/Orchestrator.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.34

13 findings
HIGH New obfuscated file: _dist/cli/bin/ccip-BxVcELKr.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/index.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/isAddressEqual-DQ_eu4EC.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccount.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccountNew.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccountOld.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/secp256k1-DlL48JMU.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/utils-ClG9dtFR.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC20.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC721.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/MultiSigSigner.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/Orchestrator.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.33

13 findings
HIGH New obfuscated file: _dist/cli/bin/ccip-CaBRSOy6.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/index.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/isAddressEqual-Dm2GMOHr.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccount.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccountNew.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccountOld.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/secp256k1-DJ8aJpkH.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/utils-CRyEb-ok.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC20.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC721.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/MultiSigSigner.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/Orchestrator.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.32

13 findings
HIGH New obfuscated file: _dist/cli/bin/ccip-CaBRSOy6.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/index.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/isAddressEqual-Dm2GMOHr.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccount.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccountNew.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccountOld.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/secp256k1-DJ8aJpkH.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/utils-CRyEb-ok.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC20.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC721.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/MultiSigSigner.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/Orchestrator.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.31

13 findings
HIGH New obfuscated file: _dist/cli/bin/ccip-CaBRSOy6.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/index.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/isAddressEqual-Dm2GMOHr.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccount.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccountNew.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccountOld.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/secp256k1-DJ8aJpkH.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/cli/bin/utils-CRyEb-ok.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC20.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC721.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/MultiSigSigner.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/Orchestrator.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.30

15 findings
HIGH New obfuscated file: _dist/cli/index.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccount.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccountNew.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccountOld.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccount.d.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: core/internal/_generated/contracts/IthacaAccount.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccountNew.d.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: core/internal/_generated/contracts/IthacaAccountNew.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: _dist/core/internal/_generated/contracts/IthacaAccountOld.d.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: core/internal/_generated/contracts/IthacaAccountOld.ts source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC20.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/ExperimentERC721.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/MultiSigSigner.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

HIGH Long encoded string in modified file: _dist/core/internal/_generated/contracts/Orchestrator.js source-diff

Modified file contains 1 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.29

2 findings
HIGH Long encoded string in modified file: core/internal/call.test.ts source-diff

Modified file contains 7 long encoded string(s) (200+ chars). These are commonly used to hide malicious payloads.

LOW No provenance attestation provenance

Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.

v0.0.28

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v0.0.27

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v0.0.26

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.

v0.0.25

1 finding
LOW No provenance attestation provenance

Package was published without Sigstore provenance. Only ~12% of npm packages have provenance, so this is common but not ideal.