@crowdstrike/foundry-js
Advanced tools
Sorry, the diff of this file is too big to display
+4
-3
| { | ||
| "name": "@crowdstrike/foundry-js", | ||
| "version": "0.19.0", | ||
| "version": "0.19.1", | ||
| "description": "foundry-js is the JavaScript SDK for authoring UI Extensions for CrowdStrike's Foundry platform.", | ||
@@ -45,3 +45,4 @@ "repository": { | ||
| "start": "yarn build --watch", | ||
| "test": "vitest" | ||
| "test": "vitest", | ||
| "postinstall": "node bundle.js" | ||
| }, | ||
@@ -83,2 +84,2 @@ "dependencies": { | ||
| } | ||
| } | ||
| } |
Known malware
Supply chain riskThis package version is identified as malware. It has been flagged either by Socket's AI scanner and confirmed by our threat research team, or is listed as malicious in security databases and other sources.
Found 1 instance in 1 package
Install scripts
Supply chain riskInstall scripts are run when the package is installed or built. Malicious packages often use scripts that run automatically to execute payloads or fetch additional code.
Found 1 instance in 1 package
Unpublished package
Supply chain riskPackage version was not found on the registry. It may exist on a different registry and need to be configured to pull from that registry.
Found 1 instance in 1 package
Environment variable access
Supply chain riskPackage accesses environment variables, which may be a sign of credential stuffing or data theft.
Found 1 instance in 1 package
Unpopular package
QualityThis package is not very popular.
Found 1 instance in 1 package
Environment variable access
Supply chain riskPackage accesses environment variables, which may be a sign of credential stuffing or data theft.
Found 1 instance in 1 package
4365051
592%41
2.5%6262
0.02%0
-100%1
Infinity%1
Infinity%1
Infinity%