-= Per source details. Do not edit below this line.=-
The OpenSSF Package Analysis project identified 'coverage-v8' @ 9.9.9 (npm) as malicious.
It is considered malicious because:
The package communicates with a domain associated with malicious activity.
The package executes one or more commands associated with malicious behavior.
{ "malicious-packages-origins": [ { "import_time": "2025-07-11T14:06:43.159757674Z", "source": "ossf-package-analysis", "modified_time": "2025-07-11T13:45:56Z", "versions": [ "9.9.9" ], "sha256": "98166dd703f18ff8ce078434268e4079742e214f593a9d13707a0b5acbf937c9" } ] }