-= Per source details. Do not edit below this line.=-
The package digital-checkout was found to contain malicious code.
The OpenSSF Package Analysis project identified 'digital-checkout' @ 99.9.99 (npm) as malicious.
It is considered malicious because:
The package communicates with a domain associated with malicious activity.
The package executes one or more commands associated with malicious behavior.
{
"malicious-packages-origins": [
{
"import_time": "2026-02-05T14:47:56.977665537Z",
"versions": [
"99.9.99"
],
"sha256": "0132aad35565a08f6756ad37434ae28ea97096ca234ac6ff4ef5a9e621a5f232",
"source": "ossf-package-analysis",
"modified_time": "2026-02-05T14:22:06Z"
},
{
"import_time": "2026-02-06T03:03:35.685352875Z",
"versions": [
"99.9.99"
],
"sha256": "f3254d2b582a5e3da6587b8994dab665d74a70e88b0383d6dd0d5f96d82e7a33",
"source": "amazon-inspector",
"modified_time": "2026-02-06T02:07:02Z"
}
]
}