A collection of round outlined Svelte icons with 0px radius and 1.5px stroke width, designed for use in Svelte applications.
No malicious attack surface was identified. Installation checks a supplied license key against the package's license service, and the flagged icon source is ordinary SVG component markup.
Package defines install-time lifecycle scripts.
package.jsonView on unpkgThe preinstall hook runs a package-local license check; prepublishOnly invokes the build.
package.jsonView on unpkg · L14A bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
Icon3d/Icon3d.svelteView on unpkgSource fingerprint signature matches a known malicious package signature; route for source-aware review.
license-check.jsView on unpkgThe license check sends CENTRAL_LICENSE_KEY as a bearer credential to centralicons.com for this package and version.
license-check.jsView on unpkg · L1This report applies to @central-icons-svelte/round-outlined-radius-0-stroke-1.5@1.2.4.
See version security history for other recorded verdicts.
Evidence last updated: .
The flagged icon component imports the shared SVG base and contains icon markup.
license-check.jsView on unpkg · L13Package defines install-time lifecycle scripts.
package.jsonView on unpkg · L15The preinstall hook runs a package-local license check; prepublishOnly invokes the build.
package.jsonView on unpkg · L14A bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
Icon3d/Icon3d.svelteView on unpkgThe license check sends CENTRAL_LICENSE_KEY as a bearer credential to centralicons.com for this package and version.
license-check.jsView on unpkg · L1The flagged icon component imports the shared SVG base and contains icon markup.
license-check.jsView on unpkg · L13Source fingerprint signature matches a known malicious package signature; route for source-aware review.
license-check.jsView on unpkg