Loading npm security reports…
math
Opening the shipped HTML dynamically imports a remote loader; its service worker loads remote worker code. This is a mutable remote-payload execution surface, not an install-time attack.
Source contains an obfuscated payload loader that reconstructs and executes hidden code.
sw.jsView on unpkg · L1Source contains an obfuscated payload loader that reconstructs and executes hidden code.
sw.jsView on unpkg · L1