A non-entry file carries an apparent console-log exfiltration payload, but it is not the package main and appears syntactically invalid. The package main is noisy browser/demo code with import-time network access but no confirmed credential harvesting.
Static reason
High-risk behavior combination matched malicious policy.
Trigger
importing package main test.js, or explicitly importing index.js
Impact
Potential log/data forwarding if index.js were made reachable and syntactically repaired; current source has no confirmed working exfiltration path.
Mechanism
inert console Proxy exfiltration carrier plus import-time remote fetches
Attack narrative
index.js appears designed to replace global console with a Proxy that routes selected console calls to Telegram and Firebase, which would capture arbitrary runtime log data. However, the file is not the declared main entry and appears invalid JavaScript as written, so static inspection does not establish a working attack path in this version.
Rationale
The package contains a credible but apparently inert exfiltration carrier in index.js, while the declared main test.js has import-time network behavior but no credential/file harvesting. This warrants a warning rather than a publish block because the concrete malicious path is not reachable as working source in the inspected package.
Evidence
package.jsonindex.jstest.jsindex.html
Network endpoints7
api.telegram.org/bot1998266306:AAFl_PSl2-caBsLDVag8kmKhU4p-YC-t9qI/sendMessageiiilll.firebaseio.com/api.imgbb.com/1/upload?key=af7cad64d90d19e2a26889f92f6b3ed8res.cloudinary.com/il/image/upload///110/0e?dts