SafeDep
Install GitHub App

Summary

Not malware. Evidence only shows an untrustworthy source project with low confidence; no direct malicious indicators found.

Verification Record

No verification record available.

Details

The package is not classified as malware because the only evidence provided indicates an 'Untrustworthy source project' with 0 stars and 0 forks on GitHub and a low OpenSSF score. While these factors suggest low community trust and potential risk, the confidence level for this evidence is explicitly marked as CONFIDENCE_LOW. Furthermore, the provided evidence does not contain any direct indicators of malicious code, suspicious behavior, or specific YARA rule matches pointing to malware. A low-trust source project alone, especially with low confidence, is not sufficient to definitively classify a package as malware without further evidence of malicious intent or functionality.

fast-string-truncated-width@3.0.3Clean
Unverified
Analysed at: 9/30/25, 8:06 PM
Source: https://registry.npmjs.org/fast-string-truncated-width/-/fast-string-truncated-width-3.0.3.tgz
SHA256: b5dace35423470b453ed5dba20419052124b8a65cb233833f17e5483523b5eb1
Confidence: Medium