Loading npm security reports…
OpenSSF/OSV advisory MAL-2026-15943 confirms this npm version as malicious. The package was found to contain malicious code or consuming dependency that contains malicious code
Package defines install-time lifecycle scripts.
package.jsonView on unpkgInstall-time lifecycle script is not statically allowlisted and needs review.
package.jsonView on unpkgPackage ships native binary artifacts.
dist/tunnel-client-linux-amd64View on unpkgThis report applies to 1cattunnel@0.3.2.
See version security history for other recorded verdicts.
Evidence last updated: .
Source advisory published: .
Package defines install-time lifecycle scripts.
package.jsonView on unpkgInstall-time lifecycle script is not statically allowlisted and needs review.
package.jsonView on unpkgPackage ships native binary artifacts.
dist/tunnel-client-linux-amd64View on unpkg