一个可扩展的前端模块化SDK框架,支持插件系统
When the ScanOrder logger is present at runtime, the package assigns hardcoded Feishu webhooks and exports its records there. Records include caller-provided payload, extra data, context, and error data.
Source file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/plugins/window.jsView on unpkgPackage source references a known benign dynamic code generation pattern.
dist/plugins/window.jsView on unpkg · L248Source sends credentials or rich application records to a package-controlled external receiver enabled by default.
dist/solution/ScanOrder/index.jsView on unpkgA bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
lib/solution/RegisterAndLogin/utils.js#virtual:normalized:round1View on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
lib/plugins/window.jsView on unpkgThis report applies to @pisell/pisellos@0.0.572.
See version security history for other recorded verdicts.
Evidence last updated: .
Package source references a known benign dynamic code generation pattern.
dist/plugins/window.jsView on unpkg · L248Source file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/plugins/window.jsView on unpkgSource sends credentials or rich application records to a package-controlled external receiver enabled by default.
dist/solution/ScanOrder/index.jsView on unpkgA bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
lib/solution/RegisterAndLogin/utils.js#virtual:normalized:round1View on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
lib/plugins/window.jsView on unpkg