Enterprise System Integration Based on SAP CAP
Importing the package causes opaque remote configuration retrieval. No confirmed data theft or command execution was identified.
Source contains an obfuscated payload loader that reconstructs and executes hidden code.
src/index.jsView on unpkg · L1Package source references dynamic require/import behavior.
src/index.jsView on unpkg · L1A bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
src/lib/_classes/index.js#virtual:normalized:round1View on unpkgThe manifest loads src/index.js as the package entrypoint.
package.jsonView on unpkg · L2Importing the interface obtains configuration immediately through getConfig.
src/lib/_interface/index.jsView on unpkg · L1The configuration code performs an HTTPS request, blocks until it completes, and decrypts the returned data before using it.
src/lib/_interface/file/index.jsView on unpkg · L1The configuration code performs an HTTPS request, blocks until it completes, and decrypts the returned data before using it.
src/lib/_interface/file/index.jsView on unpkg · L1This report applies to @cap-ts/esi@1.8.50.
See version security history for other recorded verdicts.
Evidence last updated: .
The configuration code performs an HTTPS request, blocks until it completes, and decrypts the returned data before using it.
src/lib/_interface/file/index.jsView on unpkg · L1Source contains an obfuscated payload loader that reconstructs and executes hidden code.
src/index.jsView on unpkg · L1Package source references dynamic require/import behavior.
src/index.jsView on unpkg · L1A bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
src/lib/_classes/index.js#virtual:normalized:round1View on unpkgThe manifest loads src/index.js as the package entrypoint.
package.jsonView on unpkg · L2Importing the interface obtains configuration immediately through getConfig.
src/lib/_interface/index.jsView on unpkg · L1The configuration code performs an HTTPS request, blocks until it completes, and decrypts the returned data before using it.
src/lib/_interface/file/index.jsView on unpkg · L1The configuration code performs an HTTPS request, blocks until it completes, and decrypts the returned data before using it.
src/lib/_interface/file/index.jsView on unpkg · L1The configuration code performs an HTTPS request, blocks until it completes, and decrypts the returned data before using it.
src/lib/_interface/file/index.jsView on unpkg · L1