-= Per source details. Do not edit below this line.=-
The package web3-1-4 was found to contain malicious code.
The OpenSSF Package Analysis project identified 'web3-1-4' @ 5.0.9 (npm) as malicious.
It is considered malicious because:
{
"malicious-packages-origins": [
{
"import_time": "2025-11-02T23:34:48.584153163Z",
"source": "ossf-package-analysis",
"versions": [
"5.0.9"
],
"modified_time": "2025-11-02T19:57:49Z",
"sha256": "f0b7de317eb19a16988312db7d209ce5d387fdf8c4eed8d1bf62872b4bad38ea"
},
{
"import_time": "2025-11-03T19:05:52.706910345Z",
"source": "amazon-inspector",
"versions": [
"5.0.8",
"5.0.9"
],
"modified_time": "2025-11-03T18:59:00Z",
"sha256": "f8b0f3301c4d4556f7e8700121e0fa272e12f9fa0f75868720564356cdde51ed"
}
]
}