The main bundle contains a browser-triggered disruption targeting visitors on selected country-code domains.
Browser source targets specific languages and host suffixes, disables page interaction, and automatically loops audio from a fixed external host.
dist/index.jsView on unpkgA package entrypoint or install-time lifecycle script reaches a source file with blocking dangerous behavior.
dist/index.jsView on unpkgOn import in Russian-language browsers on Russian, Belarusian, or equivalent country-code hosts, the bundle starts a delayed disruption after three days.
dist/index.jsView on unpkg · L20867Package source references a known benign dynamic code generation pattern.
dist/index.jsView on unpkg · L20269Tarball package.json differs from the npm registry version manifest for scripts or dependency sets.
package.jsonView on unpkgThe package exposes dist/index.js as its main entrypoint.
package.jsonView on unpkg · L4This report applies to es-document-template@0.0.60.
See version security history for other recorded verdicts.
Evidence last updated: .
Browser source targets specific languages and host suffixes, disables page interaction, and automatically loops audio from a fixed external host.
dist/index.jsView on unpkgA package entrypoint or install-time lifecycle script reaches a source file with blocking dangerous behavior.
dist/index.jsView on unpkgOn import in Russian-language browsers on Russian, Belarusian, or equivalent country-code hosts, the bundle starts a delayed disruption after three days.
dist/index.jsView on unpkg · L20867Package source references a known benign dynamic code generation pattern.
dist/index.jsView on unpkg · L20269The package exposes dist/index.js as its main entrypoint.
package.jsonView on unpkg · L4Tarball package.json differs from the npm registry version manifest for scripts or dependency sets.
package.jsonView on unpkg · L25