-= Per source details. Do not edit below this line.=-
The OpenSSF Package Analysis project identified 'sankson' @ 1.1.2 (npm) as malicious.
It is considered malicious because: - The package communicates with a domain associated with malicious activity. - The package executes one or more commands associated with malicious behavior.
{
"malicious-packages-origins": [
{
"import_time": "2023-08-20T06:05:16.64950992Z",
"source": "ossf-package-analysis",
"versions": [
"1.1.2"
],
"modified_time": "2023-08-20T05:38:07.623349817Z",
"sha256": "534fbedb1364b081bc2bfe7b675099176b6e2df503ee9b8e428a9815c589b224"
},
{
"import_time": "2023-08-20T07:34:26.567725679Z",
"source": "ossf-package-analysis",
"versions": [
"1.1.4"
],
"modified_time": "2023-08-20T07:07:57.384953246Z",
"sha256": "72cc26d8feb558a5282aac5f9ad4b996b736f6a0e8e8b8d31a8890279cdd99b7"
}
]
}