一个可扩展的前端模块化SDK框架,支持插件系统
The ScanOrder feature configures a built-in logger to send records to hardcoded Feishu webhooks. This creates unconsented export of operational log payloads when the feature is initialized and used.
Source file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/plugins/window.jsView on unpkgPackage source references a known benign dynamic code generation pattern.
dist/plugins/window.jsView on unpkg · L248Source sends credentials or rich application records to a package-controlled external receiver enabled by default.
dist/solution/ScanOrder/index.jsView on unpkgThe ScanOrder feature automatically registers and creates a scan-order logger module.
dist/solution/ScanOrder/index.jsView on unpkg · L436A bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
lib/solution/RegisterAndLogin/utils.js#virtual:normalized:round1View on unpkgThis report applies to @pisell/pisellos@0.10.61.
See version security history for other recorded verdicts.
Evidence last updated: .
Package source references a known benign dynamic code generation pattern.
dist/plugins/window.jsView on unpkg · L248Source file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/plugins/window.jsView on unpkgA bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
lib/solution/RegisterAndLogin/utils.js#virtual:normalized:round1View on unpkgThe ScanOrder feature automatically registers and creates a scan-order logger module.
dist/solution/ScanOrder/index.jsView on unpkg · L436Source sends credentials or rich application records to a package-controlled external receiver enabled by default.
dist/solution/ScanOrder/index.jsView on unpkg