-= Per source details. Do not edit below this line.=-
The OpenSSF Package Analysis project identified '@tradair-repo/sources-react' @ 1.0.0-malicious (npm) as malicious.
It is considered malicious because:
{ "malicious-packages-origins": [ { "import_time": "2025-08-11T13:18:09.962403945Z", "modified_time": "2025-08-11T13:15:48Z", "source": "ossf-package-analysis", "versions": [ "1.0.0-malicious" ], "sha256": "4c2e8efcfd67964d523b508359644439a1c57011cf171ba350241c6949654fe4" } ] }