一个可扩展的前端模块化SDK框架,支持插件系统
When the ScanOrder logger is present, initialization enables a hardcoded Feishu webhook by default. Application log records are serialized and sent to that external receiver.
Source file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/plugins/window.jsView on unpkgPackage source references a known benign dynamic code generation pattern.
dist/plugins/window.jsView on unpkg · L248Source sends credentials or rich application records to a package-controlled external receiver enabled by default.
dist/solution/ScanOrder/index.jsView on unpkgScanOrder initialization assigns hardcoded Feishu webhooks unless the caller supplies logger configuration.
dist/solution/ScanOrder/index.jsView on unpkg · L488A bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
lib/solution/RegisterAndLogin/utils.js#virtual:normalized:round1View on unpkgThis report applies to @pisell/pisellos@2.3.143.
See version security history for other recorded verdicts.
Evidence last updated: .
Package source references a known benign dynamic code generation pattern.
dist/plugins/window.jsView on unpkg · L248Source file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/plugins/window.jsView on unpkgA bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
lib/solution/RegisterAndLogin/utils.js#virtual:normalized:round1View on unpkgScanOrder initialization assigns hardcoded Feishu webhooks unless the caller supplies logger configuration.
dist/solution/ScanOrder/index.jsView on unpkg · L488Source sends credentials or rich application records to a package-controlled external receiver enabled by default.
dist/solution/ScanOrder/index.jsView on unpkg