-= Per source details. Do not edit below this line.=-
The package @gaia-codesearch/gaia-api-typescript was found to contain malicious code.
The OpenSSF Package Analysis project identified '@gaia-codesearch/gaia-api-typescript' @ 0.0.5 (npm) as malicious.
It is considered malicious because:
{
"malicious-packages-origins": [
{
"import_time": "2026-05-08T10:37:11.481159853Z",
"sha256": "f96009564f8e7e51171ad83f7ac75822ab1b1492ab73b06b4596a0686418299f",
"source": "ossf-package-analysis",
"modified_time": "2026-05-08T10:05:46Z",
"versions": [
"0.0.5"
]
},
{
"import_time": "2026-05-09T17:48:50.105108314Z",
"sha256": "f309c3fdb4c9fc660b3b6a1d37848723ccd3b7e2164716a820534ecadc7ee924",
"source": "ossf-package-analysis",
"modified_time": "2026-05-09T17:47:38Z",
"versions": [
"0.0.8"
]
},
{
"import_time": "2026-05-12T07:28:52.649298874Z",
"sha256": "59cc0f371f067ea9c6f0bbe7076f9f33181d8e1ae55c43ff05ae2b854de41549",
"source": "amazon-inspector",
"modified_time": "2026-05-12T06:53:21Z",
"versions": [
"0.0.5",
"0.0.8"
]
}
]
}