Automatic documentation generator for your codebase
A watched source-file change uploads its contents and stored third-party credentials to the package service. The package also solicits GitHub credentials during setup.
Source sends credentials or rich application records to a package-controlled external receiver enabled by default.
src/commands/history.tsView on unpkg · L6Source collects local host identity data and sends it to an external endpoint.
dist/commands/start.jsView on unpkg · L44A bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
package.jsonView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/commands/watch.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/commands/analytics.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/commands/apiref.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/commands/generate.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/commands/history.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/commands/template.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/services/watcher.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/commands/watch.tsView on unpkgThis report applies to docsync-agent@0.1.30.
See version security history for other recorded verdicts.
Evidence last updated: .
Source sends credentials or rich application records to a package-controlled external receiver enabled by default.
src/commands/history.tsView on unpkg · L6A bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
package.jsonView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/commands/watch.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/commands/analytics.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/commands/apiref.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/commands/generate.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/commands/history.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/commands/template.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/services/watcher.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/commands/watch.tsView on unpkgSource collects local host identity data and sends it to an external endpoint.
dist/commands/start.jsView on unpkg · L44