SafeDep
Install GitHub App

Summary

No evidence of malicious code. Low project activity is not sufficient proof of malware.

Verification Record

No verification record available.

Details

Based on the provided evidence, there is no indication that the package file-uri-to-path (version 1.0.0) is malicious. Evidence 0 highlights that the project has only published a few versions. While this could suggest immaturity or lack of maintenance, it's not conclusive evidence of malicious intent. The absence of LLM analysis, YARA matches, or other concerning behaviors prevents a determination of malware. The low number of stars and forks on GitHub is a factor to consider regarding trustworthiness, but it's insufficient to label the package as malware without further evidence of harmful activity. A lack of updates doesn't automatically equate to malicious code.

file-uri-to-path@1.0.0Clean
Unverified
Analysed at: 5/2/25, 5:24 AM
Source: https://registry.npmjs.org/file-uri-to-path/-/file-uri-to-path-1.0.0.tgz
SHA256: 5440cdf67e75ab96f36a6be63c1d4c3d54255b1d0970273710fecfebfab06fb3
Confidence: Medium