-= Per source details. Do not edit below this line.=-
The OpenSSF Package Analysis project identified 'bubble-dev' @ 50.1.1 (npm) as malicious.
It is considered malicious because:
The package communicates with a domain associated with malicious activity.
The package executes one or more commands associated with malicious behavior.
{
"malicious-packages-origins": [
{
"import_time": "2024-02-28T21:04:48.160486358Z",
"modified_time": "2024-02-28T20:55:45Z",
"sha256": "de676130e5f20504bbb50fd8fdbed9113a13ef5cb82cb7989dfdd28a8bfb4f42",
"source": "ossf-package-analysis",
"versions": [
"50.1.1"
]
},
{
"import_time": "2024-02-28T22:04:44.782475897Z",
"modified_time": "2024-02-28T22:00:27Z",
"sha256": "1e6d8436343617790e1624d87bca0cf151a493f9ceb3273a254b37cd105e64bd",
"source": "ossf-package-analysis",
"versions": [
"90.2.2"
]
}
]
}