-= Per source details. Do not edit below this line.=-
The OpenSSF Package Analysis project identified 'bubble-dev' @ 50.1.1 (npm) as malicious.
It is considered malicious because:
The package communicates with a domain associated with malicious activity.
The package executes one or more commands associated with malicious behavior.
{ "malicious-packages-origins": [ { "sha256": "de676130e5f20504bbb50fd8fdbed9113a13ef5cb82cb7989dfdd28a8bfb4f42", "import_time": "2024-02-28T21:04:48.160486358Z", "versions": [ "50.1.1" ], "source": "ossf-package-analysis", "modified_time": "2024-02-28T20:55:45Z" }, { "sha256": "1e6d8436343617790e1624d87bca0cf151a493f9ceb3273a254b37cd105e64bd", "import_time": "2024-02-28T22:04:44.782475897Z", "versions": [ "90.2.2" ], "source": "ossf-package-analysis", "modified_time": "2024-02-28T22:00:27Z" } ] }