Loading npm security reports…
At worker initialization, configured mail-account metadata is sent to a hard-coded third-party logging host. No install-time execution is present.
Source file is highly similar to a previously finalized malicious package; route for source-aware review.
worker-bundle.jsView on unpkgSource fingerprint signature matches a known malicious package signature; route for source-aware review.
worker-bundle.jsView on unpkgAccount setup logs each account's email and IMAP host to that endpoint.
sync-manager.jsView on unpkg · L30Source file is highly similar to a previously finalized malicious package; route for source-aware review.
worker-bundle.jsView on unpkgSource fingerprint signature matches a known malicious package signature; route for source-aware review.
worker-bundle.jsView on unpkgAccount setup logs each account's email and IMAP host to that endpoint.
sync-manager.jsView on unpkg · L30