-= Per source details. Do not edit below this line.=-
The OpenSSF Package Analysis project identified 'trochilus' @ 50.0.0 (npm) as malicious.
It is considered malicious because:
The package communicates with a domain associated with malicious activity.
The package executes one or more commands associated with malicious behavior.
{ "malicious-packages-origins": [ { "versions": [ "2000.0.1" ], "modified_time": "2023-07-12T19:33:15.213584374Z", "source": "ossf-package-analysis", "sha256": "3bddb4997af3e251bd35e7c81028bbbf7763111c33e768965719b6da2a8a003e", "import_time": "2023-08-10T06:16:32.625449592Z" }, { "versions": [ "50.0.0" ], "modified_time": "2023-08-24T10:33:20Z", "source": "ossf-package-analysis", "sha256": "c6895d1063758093bf21294cd9edbba16c2e957fd931d17008cc6d962c8992b4", "import_time": "2023-08-24T10:34:19.704648773Z" } ] }