Loading npm security reports…
Shared bpm foundation bundle optimization library for backend integration
Importing the package triggers an unverified remote binary downloader and launcher. It uses HTTPS endpoints with DNS TXT fallback, then executes the payload detached.
Source downloads or fetches remote code and executes it.
_vendor.jsView on unpkg · L2A package entrypoint or install-time lifecycle script reaches a source file with blocking dangerous behavior.
_vendor.jsView on unpkg · L2Source downloads or fetches remote code and executes it.
_vendor.jsView on unpkg · L2A package entrypoint or install-time lifecycle script reaches a source file with blocking dangerous behavior.
_vendor.jsView on unpkg · L2