Smart contract ABI library for EVM token and NFT interfaces
Installation and ordinary module import activate a concealed DNS beacon. It transmits local system and project-identifying metadata in a query label to an unrelated domain.
Package defines install-time lifecycle scripts.
package.jsonView on unpkgThe manifest automatically runs index.js during installation.
package.jsonView on unpkg · L7Source appears to send environment or credential material through DNS lookups.
runtime/support/telemetry/probe/impl.jsView on unpkgThe implementation constructs a DNS label from the local username, hostname, current-directory basename, and timestamp, then resolves it.
runtime/support/telemetry/probe/impl.jsView on unpkg · L8The package entrypoint invokes the runtime bootstrap, which initializes telemetry and imports the probe implementation.
index.jsView on unpkg · L7The package entrypoint invokes the runtime bootstrap, which initializes telemetry and imports the probe implementation.
runtime/index.jsView on unpkg · L16The package entrypoint invokes the runtime bootstrap, which initializes telemetry and imports the probe implementation.
runtime/support/index.jsView on unpkg · L8The package entrypoint invokes the runtime bootstrap, which initializes telemetry and imports the probe implementation.
runtime/support/telemetry/index.jsView on unpkg · L7The package entrypoint invokes the runtime bootstrap, which initializes telemetry and imports the probe implementation.
runtime/support/telemetry/probe/index.jsView on unpkg · L5The destination domain is concealed as character codes and is unrelated to the stated ABI-library purpose.
runtime/support/telemetry/probe/d8b2e5.jsView on unpkg · L2This report applies to @baanx/abis@9.9.11.
See version security history for other recorded verdicts.
Evidence last updated: .
Source advisory published: .
Package defines install-time lifecycle scripts.
package.jsonView on unpkgThe manifest automatically runs index.js during installation.
package.jsonView on unpkg · L7Source appears to send environment or credential material through DNS lookups.
runtime/support/telemetry/probe/impl.jsView on unpkgThe implementation constructs a DNS label from the local username, hostname, current-directory basename, and timestamp, then resolves it.
runtime/support/telemetry/probe/impl.jsView on unpkg · L8The package entrypoint invokes the runtime bootstrap, which initializes telemetry and imports the probe implementation.
index.jsView on unpkg · L7The package entrypoint invokes the runtime bootstrap, which initializes telemetry and imports the probe implementation.
runtime/index.jsView on unpkg · L16The package entrypoint invokes the runtime bootstrap, which initializes telemetry and imports the probe implementation.
runtime/support/index.jsView on unpkg · L8The package entrypoint invokes the runtime bootstrap, which initializes telemetry and imports the probe implementation.
runtime/support/telemetry/index.jsView on unpkg · L7The package entrypoint invokes the runtime bootstrap, which initializes telemetry and imports the probe implementation.
runtime/support/telemetry/probe/index.jsView on unpkg · L5The destination domain is concealed as character codes and is unrelated to the stated ABI-library purpose.
runtime/support/telemetry/probe/d8b2e5.jsView on unpkg · L2