-= Per source details. Do not edit below this line.=-
The package payouts-report was found to contain malicious code.
The OpenSSF Package Analysis project identified 'payouts-report' @ 2.0.1 (npm) as malicious.
It is considered malicious because:
{
"malicious-packages-origins": [
{
"versions": [
"2.0.1"
],
"sha256": "7d92b97c80ca506eec15a34fa337078b0360b45d242d4bf1eb6a79be8863add2",
"modified_time": "2025-11-07T19:41:00Z",
"import_time": "2025-11-07T20:07:05.883377499Z",
"source": "ossf-package-analysis"
},
{
"ranges": [
{
"type": "SEMVER",
"events": [
{
"introduced": "0"
}
]
}
],
"modified_time": "2025-11-09T00:17:09Z",
"sha256": "becec2c60d20e2a05077102cbd8851073afafea45cec70202a05d3af32bb3ccc",
"import_time": "2025-11-09T00:27:23.674925402Z",
"source": "amazon-inspector"
}
]
}