Static Scan Results
scanned 2h ago · by rust-scannerStatic analysis flagged 14 finding(s) at 72.0% confidence. This version is warn-only unless an AI or security-team review confirms malicious behavior.
Decision evidence
public snapshotSource & flagged code
5 flagged · loading sourcePackage source references child process execution.
dist/studio/design-system-trace.jsView on unpkg · L1Package source invokes a package manager install command at runtime.
dist/preview/server.jsView on unpkg · L86Package source references weak cryptographic algorithms.
dist/research/design-package.jsView on unpkg · L189A single source file combines environment access, network access, and code or shell execution; review context before blocking.
dist/utils/update-check.jsView on unpkg · L14