-= Per source details. Do not edit below this line.=-
The package feature-flag-service was found to contain malicious code.
The OpenSSF Package Analysis project identified 'feature-flag-service' @ 2.0.3 (npm) as malicious.
It is considered malicious because:
{
"malicious-packages-origins": [
{
"sha256": "69173384cc716a5a94e29e7abd367e903fcb600836a9c0a5f5c656236b2fd803",
"import_time": "2026-05-03T22:48:10.20252281Z",
"modified_time": "2026-05-03T22:45:35Z",
"versions": [
"2.0.3"
],
"source": "ossf-package-analysis"
},
{
"sha256": "876fa5645622fb575a15d1c6e437fd3bfe86737223af0439befec4bb6c1f2670",
"import_time": "2026-05-03T22:48:09.991383053Z",
"modified_time": "2026-05-03T22:30:37Z",
"versions": [
"2.0.2"
],
"source": "ossf-package-analysis"
},
{
"sha256": "9ba3fb4537827a604de645ffad07771bc9f7ed4e1f4a70b16b4c35effadcf744",
"import_time": "2026-05-12T07:28:47.302551187Z",
"modified_time": "2026-05-12T06:53:21Z",
"versions": [
"2.0.3",
"2.0.2"
],
"source": "amazon-inspector"
}
]
}