-= Per source details. Do not edit below this line.=-
The OpenSSF Package Analysis project identified '@tradair-repo/sources-react' @ 1.0.0-malicious (npm) as malicious.
It is considered malicious because:
{
"malicious-packages-origins": [
{
"sha256": "4c2e8efcfd67964d523b508359644439a1c57011cf171ba350241c6949654fe4",
"source": "ossf-package-analysis",
"modified_time": "2025-08-11T13:15:48Z",
"versions": [
"1.0.0-malicious"
],
"import_time": "2025-08-11T13:18:09.962403945Z"
}
]
}