The package contains an embedded executable, but lacks sufficient evidence to classify it as malware.
No verification record available.
The package @img/sharp-libvips-linux-arm64 version 1.2.4 contains package/lib/libvips-cpp.so.8.17.3, which is an executable file. This is not necessarily malicious, as pre-compiled binaries are sometimes embedded in packages. Although the file extension .3 does not match the file content elf, this could be due to versioning or other legitimate reasons. Without stronger evidence, it is not possible to classify this package as malware.