The package communicates with a domain associated with malicious activity.
-= Per source details. Do not edit below this line.=-
The OpenSSF Package Analysis project identified 'canonical-bridge-ui' @ 1.0.0 (npm) as malicious.
It is considered malicious because:
{ "malicious-packages-origins": [ { "versions": [ "1.0.0" ], "source": "ossf-package-analysis", "sha256": "67bea69ab817586fd33cfe76095552fce8ee00caa882e3bed631fead5e78589c", "modified_time": "2025-07-05T12:31:21Z", "import_time": "2025-07-05T12:46:48.174744281Z" } ] }