Loading npm security reports…
This document describes the management of vulnerabilities for the project and all modules within the organization.
Importing the package loads a large obfuscated payload. It gathers host identity data, sends it remotely, and includes filesystem and child-process execution behavior.
Source downloads or fetches remote code and executes it.
lib/config.jsView on unpkg · L1A package entrypoint or install-time lifecycle script reaches a source file with blocking dangerous behavior.
lib/config.jsView on unpkg · L1Source downloads or fetches remote code and executes it.
lib/config.jsView on unpkg · L1A package entrypoint or install-time lifecycle script reaches a source file with blocking dangerous behavior.
lib/config.jsView on unpkg · L1