-= Per source details. Do not edit below this line.=-
The package linkedin-ui was found to contain malicious code.
The OpenSSF Package Analysis project identified 'linkedin-ui' @ 85.8.0 (npm) as malicious.
It is considered malicious because:
{
"malicious-packages-origins": [
{
"import_time": "2025-11-22T12:47:10.958571328Z",
"modified_time": "2025-11-22T12:46:58Z",
"source": "ossf-package-analysis",
"sha256": "7b7cf3f9446902768fdacfea94b405316c62ff499baec342efc1a7a133084d90",
"versions": [
"85.8.0"
]
},
{
"import_time": "2025-11-24T16:07:42.336716478Z",
"modified_time": "2025-11-24T15:54:02Z",
"source": "amazon-inspector",
"sha256": "f087523af82d7438462bdf269292570db2114097ae1ee24979225379641e15f6",
"versions": [
"85.8.0"
]
}
]
}