A collection of round filled Solid icons with 3px radius and 2px stroke width, designed for use in Solid applications.
No attack was identified. The install hook performs a license check against the package's matching service endpoint.
Package defines install-time lifecycle scripts.
package.jsonView on unpkgThe preinstall hook runs a license check when the package is installed.
package.jsonView on unpkg · L13Source fingerprint signature matches a known malicious package signature; route for source-aware review.
license-check.jsView on unpkgThe check reads a caller-provided CENTRAL_LICENSE_KEY and sends it to centralicons.com/license/check with this package's name and version.
license-check.jsView on unpkg · L1The check reads a caller-provided CENTRAL_LICENSE_KEY and sends it to centralicons.com/license/check with this package's name and version.
license-check.jsView on unpkg · L13The response is used to check license validity; network or response errors are caught and logged.
license-check.jsView on unpkg · L33This report applies to @central-icons-solid/round-filled-radius-3-stroke-2@1.2.4.
See version security history for other recorded verdicts.
Evidence last updated: .
Package defines install-time lifecycle scripts.
package.jsonView on unpkg · L14The preinstall hook runs a license check when the package is installed.
package.jsonView on unpkg · L13The check reads a caller-provided CENTRAL_LICENSE_KEY and sends it to centralicons.com/license/check with this package's name and version.
license-check.jsView on unpkg · L1The check reads a caller-provided CENTRAL_LICENSE_KEY and sends it to centralicons.com/license/check with this package's name and version.
license-check.jsView on unpkg · L13The response is used to check license validity; network or response errors are caught and logged.
license-check.jsView on unpkg · L33Source fingerprint signature matches a known malicious package signature; route for source-aware review.
license-check.jsView on unpkg