Insufficient evidence to classify as malware. Missing project info is inconclusive; further analysis needed.
No verification record available.
Based on the provided evidence, there is insufficient information to classify @radix-ui/react-arrow version 1.1.2 as malware. Evidence 0 highlights a lack of source project information, which is a low-confidence indicator. This could be due to the package being newly published, the project being private, or an issue with our database. The absence of further evidence (e.g., suspicious code detected by LLM analysis, malicious file contents, or negative reputation from other security tools) prevents a definitive malware classification. A lack of project information alone is not sufficient to label a package as malicious. Further investigation is needed, including examining the package contents for suspicious code and verifying the provenance information (if available).