Single, low-confidence YARA rule match ('sus_dylib_tls_get_addr') is not enough to classify the package as malware.
No verification record available.
The evidence consists of a single YARA rule match ('sus_dylib_tls_get_addr') on the sharp-linux-arm.node file. While the rule suggests suspicious runtime dependency resolution, a single low-confidence YARA rule match is insufficient to classify the package as malware. There is no other supporting evidence to indicate malicious intent.