Environment variable access
Supply chain riskPackage accesses environment variables, which may be a sign of credential stuffing or data theft.
Found 2 instances
AI-detected potential code anomaly
Supply chain riskAI has identified unusual behaviors that may pose a security risk.
Long strings
Supply chain riskContains long string literals, which may be a sign of obfuscated or packed code.
Long strings
Supply chain riskContains long string literals, which may be a sign of obfuscated or packed code.
No tests
QualityPackage does not have any tests. This is a strong signal of a poorly maintained or low quality package.
74039
14.44%6
50%985
12.96%0
-100%144
27.43%14
55.56%