Package Under Review
This package is under review. Identity is withheld until findings are confirmed. This is an automated assessment and findings are risk indicators, not confirmed threats.
1 threat detected
Downloads: <1K
pkg-ZXhjZXNzX2Nl...
npmwarnings detectedSecurity Scan Results
Warnings detected due to potential concerns
CVEs
1
Threats
1
Install Scripts
0
Risk Indicators
- •MAL-2025-113758: UNKNOWN
Confirmed Threats (1)
Typosquatting
confidence: 90%confirmed
Location: publishScript.js:127-184
packageData.name = `${randomFruit}_z3n`; ... exec("npm publish --access public"Known CVE Vulnerabilities (1)
Malicious code in excess_centipede_z3n (npm)
brin Recommendations
- →This package has warnings detected. Evaluate the specific concerns before proceeding.
- →1 verified threat pattern detected. Review the specific findings and consider alternatives.
This is an automated, point-in-time assessment and may contain errors. Findings are risk indicators, not confirmed threats. Security posture may change over time. Maintainers can dispute findings via the brin review process.
Identity withheld
Pending verification process
Download Range
<1K
Last Scanned
2 days ago
Trust Score
50/100·Legitimacy signals, not safety
Capabilities
Filesystem
Reads & Writes files
Process
Spawns child processes