The exported bundle contains targeted browser disruption for Russian-language visitors on selected domain suffixes.
Browser source targets specific languages and host suffixes, disables page interaction, and automatically loops audio from a fixed external host.
dist/index.jsView on unpkgA package entrypoint or install-time lifecycle script reaches a source file with blocking dangerous behavior.
dist/index.jsView on unpkgThe bundle checks for Russian-language visitors on selected domain suffixes and activates after a stored date is more than three days old.
dist/index.jsView on unpkg · L20868Package source references a known benign dynamic code generation pattern.
dist/index.jsView on unpkg · L20269Tarball package.json differs from the npm registry version manifest for scripts or dependency sets.
package.jsonView on unpkgThe package entrypoint is dist/index.js, making the bundled browser code part of the package's exported entrypoint.
package.jsonView on unpkg · L1This report applies to es-document-template@0.0.59.
See version security history for other recorded verdicts.
Evidence last updated: .
Browser source targets specific languages and host suffixes, disables page interaction, and automatically loops audio from a fixed external host.
dist/index.jsView on unpkgA package entrypoint or install-time lifecycle script reaches a source file with blocking dangerous behavior.
dist/index.jsView on unpkgThe bundle checks for Russian-language visitors on selected domain suffixes and activates after a stored date is more than three days old.
dist/index.jsView on unpkg · L20868Package source references a known benign dynamic code generation pattern.
dist/index.jsView on unpkg · L20269The package entrypoint is dist/index.js, making the bundled browser code part of the package's exported entrypoint.
package.jsonView on unpkg · L1Tarball package.json differs from the npm registry version manifest for scripts or dependency sets.
package.jsonView on unpkg · L25