A collection of round outlined Svelte icons with 3px radius and 1px stroke width, designed for use in Svelte applications.
No attack was identified in the inspected source. The preinstall hook performs a package license check.
Package defines install-time lifecycle scripts.
package.jsonView on unpkgThe preinstall hook runs a license check, and the icon component imports the shared icon base and renders SVG shapes.
package.jsonView on unpkg · L14A bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
Icon3d/Icon3d.svelteView on unpkgSource fingerprint signature matches a known malicious package signature; route for source-aware review.
license-check.jsView on unpkgThe license check reads the package-specific license key from the environment and sends it to the package's license endpoint with this package and version.
license-check.jsView on unpkg · L1This report applies to @central-icons-svelte/round-outlined-radius-3-stroke-1@1.2.8.
See version security history for other recorded verdicts.
Evidence last updated: .
The license check reads the package-specific license key from the environment and sends it to the package's license endpoint with this package and version.
Package defines install-time lifecycle scripts.
package.jsonView on unpkg · L15The preinstall hook runs a license check, and the icon component imports the shared icon base and renders SVG shapes.
package.jsonView on unpkg · L14A bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
Icon3d/Icon3d.svelteView on unpkgThe license check reads the package-specific license key from the environment and sends it to the package's license endpoint with this package and version.
license-check.jsView on unpkg · L1The license check reads the package-specific license key from the environment and sends it to the package's license endpoint with this package and version.
license-check.jsView on unpkg · L13Source fingerprint signature matches a known malicious package signature; route for source-aware review.
license-check.jsView on unpkg