Static Scan Results
scanned 2d ago · by rust-scannerStatic analysis flagged 10 finding(s) at 72.0% confidence. This version is warn-only unless an AI or security-team review confirms malicious behavior.
Decision evidence
public snapshotSource & flagged code
5 flagged · loading sourceSource gates dangerous network, credential, or execution behavior behind CI, host, platform, time, or geo fingerprint checks.
dist/index.jsView on unpkg · L5Package source invokes a package manager install command at runtime.
dist/index.jsView on unpkg · L201Package hides binary, compressed, or executable-looking payloads in test/fixture/hidden paths.
templates/e3/tests/test_unit.pyView on unpkgPackage ships non-JavaScript build or shell helper files.
templates/e3/tests/test_unit.pyView on unpkg