The package communicates with a domain associated with malicious activity.
-= Per source details. Do not edit below this line.=-
The OpenSSF Package Analysis project identified 'oneplussam' @ 1.0.0 (npm) as malicious.
It is considered malicious because:
{ "malicious-packages-origins": [ { "modified_time": "2025-06-29T15:23:30Z", "import_time": "2025-06-29T15:36:03.15463304Z", "source": "ossf-package-analysis", "sha256": "34492315b5823c0f8b2cd584ed74671ca1fc7e262c6a9e084acbe79bd124615c", "versions": [ "1.0.0" ] } ] }