The package communicates with a domain associated with malicious activity.
-= Per source details. Do not edit below this line.=-
The OpenSSF Package Analysis project identified 'personalizationtrkserv' @ 11.0.1 (npm) as malicious.
It is considered malicious because:
{
"malicious-packages-origins": [
{
"modified_time": "2025-08-17T15:34:33Z",
"versions": [
"11.0.1"
],
"sha256": "4e171fa4d76ea31b32b21ec8efae81c75a65d7adcc42a621c06cfd5406110131",
"source": "ossf-package-analysis",
"import_time": "2025-08-18T06:09:47.081097052Z"
},
{
"modified_time": "2025-08-17T14:33:04Z",
"versions": [
"11.0.0"
],
"sha256": "bd02b4c71f2e094ca30c210b053d12bf7bd98eb32267c8f34adaa961765de4ff",
"source": "ossf-package-analysis",
"import_time": "2025-08-18T06:09:46.887422109Z"
},
{
"modified_time": "2025-08-28T07:36:03Z",
"versions": [
"10.0.0",
"11.0.0",
"11.0.1"
],
"sha256": "4bc2acef9e0b676859c4ba80e6bfdbf2467638019e3d4e6f02d1ff6ff671ce5d",
"id": "RLMA-2025-04629",
"source": "reversing-labs",
"import_time": "2025-08-29T06:42:30.576468608Z"
}
]
}