The package communicates with a domain associated with malicious activity.
-= Per source details. Do not edit below this line.=-
The OpenSSF Package Analysis project identified 'zd-cms' @ 99.99.2 (npm) as malicious.
It is considered malicious because:
{ "malicious-packages-origins": [ { "import_time": "2025-06-26T04:41:35.235100976Z", "modified_time": "2025-06-25T07:55:44Z", "versions": [ "99.99.2" ], "source": "ossf-package-analysis", "sha256": "a0ee048e66699f6f59a56b96fdc1779cd17f77362f778409728eba9d0228336a" } ] }