-= Per source details. Do not edit below this line.=-
The OpenSSF Package Analysis project identified '@taxify/smartpickups' @ 9.999.0 (npm) as malicious.
It is considered malicious because:
The package communicates with a domain associated with malicious activity.
The package executes one or more commands associated with malicious behavior.
{
"malicious-packages-origins": [
{
"sha256": "9d20e7ecf4639b1082be1a46fec756d84cc7d8fc35310af0e6af87e19879fcf7",
"versions": [
"9.999.0"
],
"import_time": "2024-08-06T15:34:13.028826112Z",
"source": "ossf-package-analysis",
"modified_time": "2024-08-06T15:19:04Z"
},
{
"sha256": "5fa6420ceb51b8ece3751b9fa9064288fcf5dce1c0e03513afef21f0de192176",
"versions": [
"10.0.0"
],
"import_time": "2024-08-06T16:36:38.499682032Z",
"source": "ossf-package-analysis",
"modified_time": "2024-08-06T16:07:02Z"
},
{
"modified_time": "2024-10-16T12:25:31Z",
"sha256": "49a6b590f70d6795c4456775b23ab6cf5465c929aee73821ed2f9d42ad522df4",
"versions": [
"8.999.0",
"9.999.0",
"10.0.0",
"10.0.1"
],
"import_time": "2024-10-24T00:56:08.504666521Z",
"source": "reversing-labs",
"id": "RLMA-2024-06053"
}
]
}