-= Per source details. Do not edit below this line.=-
The OpenSSF Package Analysis project identified '@google-research/retvecjs' @ 100.999.99 (npm) as malicious.
It is considered malicious because:
The package communicates with a domain associated with malicious activity.
The package executes one or more commands associated with malicious behavior.
{ "malicious-packages-origins": [ { "import_time": "2024-09-03T18:06:12.196233187Z", "source": "ossf-package-analysis", "modified_time": "2024-09-03T17:38:24Z", "versions": [ "100.999.99" ], "sha256": "f7a64d316c75e0e53a3a525a50d591725648d0064b5f1d5c622b3c94ef5aaf30" }, { "import_time": "2024-12-09T14:38:13.141343848Z", "id": "RLMA-2024-10396", "modified_time": "2024-12-08T21:58:59Z", "versions": [ "100.99.99" ], "source": "reversing-labs", "sha256": "7f003932cd044054572afe774833a32cb811ea84e2bfe3f32cda52ea5759fd1d" } ] }