Facebook Chat API - Redefine By renz2451 | r3nz75
The package defaults to a third-party login server and automatically forwards configured Facebook account credentials when a session is invalid or MQTT recovery fails.
Package contains a high-severity secret pattern.
e2ee/vendor/fb-e2ee.cjsView on unpkg · L2964Package source references weak cryptographic algorithms.
e2ee/vendor/fb-e2ee.cjsView on unpkg · L130A bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
e2ee/index.jsView on unpkgPackage source references a known benign dynamic code generation pattern.
e2ee/index.jsView on unpkg · L145Package source references dynamic require/import behavior.
e2ee/protocol.jsView on unpkg · L14Source sends credentials or rich application records to a package-controlled external receiver enabled by default.
module/config.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
module/config.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/api/socket/e2ee/e2ee/index.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/api/socket/e2ee/index.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/api/socket/core/getSeqID.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/api/threads/getThreadInfo.jsView on unpkgGoogle API key in src/api/socket/e2ee/e2ee/vendor/fb-e2ee.cjs
src/api/socket/e2ee/e2ee/vendor/fb-e2ee.cjsView on unpkg · L2964Google API key in src/api/socket/e2ee/vendor/fb-e2ee.cjs
src/api/socket/e2ee/vendor/fb-e2ee.cjsView on unpkg · L2964This report applies to fcanew-r3nz75@10.1.15.
See version security history for other recorded verdicts.
Evidence last updated: .
Package source references weak cryptographic algorithms.
e2ee/vendor/fb-e2ee.cjsView on unpkg · L130Source sends credentials or rich application records to a package-controlled external receiver enabled by default.
module/config.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
module/config.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/api/socket/e2ee/e2ee/index.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/api/socket/e2ee/index.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/api/socket/core/getSeqID.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/api/threads/getThreadInfo.jsView on unpkgPackage contains a high-severity secret pattern.
e2ee/vendor/fb-e2ee.cjsView on unpkg · L2964Package source references a known benign dynamic code generation pattern.
e2ee/index.jsView on unpkg · L145A bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
e2ee/index.jsView on unpkgPackage source references dynamic require/import behavior.
e2ee/protocol.jsView on unpkg · L14Google API key in src/api/socket/e2ee/e2ee/vendor/fb-e2ee.cjs
src/api/socket/e2ee/e2ee/vendor/fb-e2ee.cjsView on unpkg · L2964Google API key in src/api/socket/e2ee/vendor/fb-e2ee.cjs
src/api/socket/e2ee/vendor/fb-e2ee.cjsView on unpkg · L2964