npmv11.5.2
Copy SHA256
License: Copyleft (Artistic-2.0)
Published: about 2 months ago
a package manager for JavaScript
Warning
Risk: Tampering
1 suspicious application behaviors
SAFE Assessment
Compliance
Licenses
No license compliance issues
Secrets
No sensitive information found
Security
Vulnerabilities
No known vulnerabilities detected
Hardening
No application hardening issues
Threats
Tampering
1 suspicious application behaviors
Malware
No evidence of malware inclusion
Issues
high
Detected presence of software components with dependencies that are hosted outside the official project repository.
hunting
high
Detected presence of files containing URLs that link to raw files on GitHub.
hunting
high
Detected presence of files with behaviors similar to malicious packages published on NPM.
hunting
medium
Detected presence of software components without a declared source code repository.
hunting
medium
Detected presence of files containing URLs related to IP querying services.
hunting
Behaviors
Vulnerabilities
Downloads
1.13B
Recorded Downloads Since 2021
Contributions
126
Contributors
Dependencies
66
Declared Dependencies
Dependents
18.21K
Dependents