Loading npm security reports…
Importing the package entrypoint immediately executes a hidden loader. It retrieves and runs attacker-controlled code from dynamically derived HTTP hosts.
Package source references a known benign dynamic code generation pattern.
build/index.jsView on unpkg · L32A single source file combines environment access, network access, and code or shell execution; review context before blocking.
build/index.js#virtual:base64:round1View on unpkg · L1Package source references a known benign dynamic code generation pattern.
build/index.jsView on unpkg · L32A single source file combines environment access, network access, and code or shell execution; review context before blocking.
build/index.js#virtual:base64:round1View on unpkg · L1