Package Under Review
This package is under review. Identity is withheld until findings are confirmed. This is an automated assessment and findings are risk indicators, not confirmed threats.
0 threats detected
Downloads: 1M+
pkg-QG54L3dvcmtz...
npmunder reviewSecurity Scan Results
This package is under review — findings have not yet been confirmed
CVEs
0
Threats
0
Install Scripts
0
Risk Indicators
- •CommandInjection detected (90% confidence)
- •Can spawn child processes
brin Recommendations
- →This package is assessed as high-risk. Manual review is strongly recommended before use.
This is an automated, point-in-time assessment and may contain errors. Findings are risk indicators, not confirmed threats. Security posture may change over time. Maintainers can dispute findings via the brin review process.
Identity withheld
Pending verification process
Download Range
1M+
Last Scanned
Feb 3, 2026
Trust Score
75/100·Legitimacy signals, not safety
Capabilities
Process
Spawns child processes
Environment
Accesses: CI, NX_ADD_PLUGINS, NX_E2E_PRESET_VERSION...