registry  /  stack-analyze  /  1.4.3

stack-analyze@1.4.3

cli tech stack analyze and pagespeed with node.js using the wappalyzer module. with google pagespeed api, hardware and crypto market

Static Scan Results

scanned 2h ago · by rust-scanner

Static analysis flagged 6 finding(s) at 72.0% confidence. This version is warn-only unless an AI or security-team review confirms malicious behavior.

Static reason
One or more suspicious static signals were detected.

Decision evidence

public snapshot
Behavioral surface
Source
FilesystemNetwork
Supply chain
HighEntropyStringsUrlStrings
ManifestNo manifest risk signals triggered.
scanned 38 file(s), 59.7 KB of source, external domains: api-ssl.bitly.com, api.animechan.io, api.coingecko.com, api.deezer.com, api.github.com, api.jikan.moe, api.themoviedb.org, api.twitch.tv, bicyclecards.com, bundlephobia.com, de1.api.radio-browser.info, eightballapi.com, example.com, nodejs.org, pokeapi.co, potterapi-fedeperin.vercel.app, shortwave.live, sol-moon-wallpapers.vercel.app, taylorswiftapi.onrender.com, www.googleapis.com

Source & flagged code

1 flagged · loading source
functions/password.jsView file
22patternName = generic_password severity = medium line = 22 matchedText = console....rd);
Medium
Secret Pattern

Package contains a possible secret pattern.

functions/password.jsView on unpkg · L22

Findings

2 Medium4 Low
MediumSecret Patternfunctions/password.js
MediumNetwork
LowScripts Present
LowFilesystem
LowHigh Entropy Strings
LowUrl Strings