Static Scan Results
scanned 21h ago · by rust-scannerStatic analysis flagged 13 finding(s) at 93.0% confidence. This version is warn-only unless an AI or security-team review confirms malicious behavior.
Decision evidence
public snapshotSource & flagged code
5 flagged · loading sourcePackage source references a known benign dynamic code generation pattern.
out/providers/opencodeSdkProvider.jsView on unpkg · L102Package source references dynamic require/import behavior.
bin/autodev-ping.jsView on unpkg · L5Package source references weak cryptographic algorithms.
out/rdp/bridge.jsView on unpkg · L57Source gates dangerous network, credential, or execution behavior behind CI, host, platform, time, or geo fingerprint checks.
out/providers/copilotSdkProvider.jsView on unpkg · L66This package version adds a dangerous source file absent from the previous stored version; route for source-aware review.
out/configManager.jsView on unpkg