-= Per source details. Do not edit below this line.=-
The package ally-whitelist was found to contain malicious code.
The OpenSSF Package Analysis project identified 'ally-whitelist' @ 99.99.99 (npm) as malicious.
It is considered malicious because:
{
"malicious-packages-origins": [
{
"import_time": "2026-05-04T03:13:22.363376261Z",
"sha256": "86e3559c0b0587ac2ae9da50ee189de7d9229205ef89e7e26ccd336b60630db7",
"source": "ossf-package-analysis",
"modified_time": "2026-05-03T12:29:27Z",
"versions": [
"99.99.99"
]
},
{
"import_time": "2026-05-04T23:49:25.351815955Z",
"sha256": "9a647b17e17f4edb85dadde4efe9c9c102f03fda72cf49a42ef1a00e825a1a9e",
"source": "ossf-package-analysis",
"modified_time": "2026-05-04T13:20:43Z",
"versions": [
"100.0.0"
]
},
{
"import_time": "2026-05-12T07:28:57.487878905Z",
"sha256": "db0425c83302370ea529e2baaabc1ada94b5515fb01d3437ed45bbc766e4e8f4",
"source": "amazon-inspector",
"modified_time": "2026-05-12T06:53:21Z",
"versions": [
"99.99.99",
"100.0.0"
]
}
]
}