A collection of square outlined Svelte icons with 0px radius and 1px stroke width, designed for use in Svelte applications.
No attack was identified. The install hook checks a supplied license key against the package vendor’s license endpoint.
Package defines install-time lifecycle scripts.
package.jsonView on unpkgThe preinstall hook runs a license check, while prepublishOnly runs the build.
package.jsonView on unpkg · L15A bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
Icon3d/Icon3d.svelteView on unpkgThe flagged icon file contains static SVG circle elements and imports the shared icon base.
Icon3d/Icon3d.svelteView on unpkg · L5Source fingerprint signature matches a known malicious package signature; route for source-aware review.
license-check.jsView on unpkgThe license check reads an explicitly configured Central license key and sends it to the Central Icons license endpoint with package and version metadata.
license-check.jsView on unpkg · L1This report applies to @central-icons-svelte/square-outlined-radius-0-stroke-1@1.2.7.
See version security history for other recorded verdicts.
Evidence last updated: .
Package defines install-time lifecycle scripts.
package.jsonView on unpkg · L15The preinstall hook runs a license check, while prepublishOnly runs the build.
package.jsonView on unpkg · L15The flagged icon file contains static SVG circle elements and imports the shared icon base.
Icon3d/Icon3d.svelteView on unpkg · L5A bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
Icon3d/Icon3d.svelteView on unpkgThe license check reads an explicitly configured Central license key and sends it to the Central Icons license endpoint with package and version metadata.
license-check.jsView on unpkg · L1Source fingerprint signature matches a known malicious package signature; route for source-aware review.
license-check.jsView on unpkg