SafeDep
Install GitHub App

Summary

Single low confidence YARA rule match is insufficient to classify as malware. Legitimate obfuscation is possible.

Verification Record

No verification record available.

Details

The YARA rule python_exec_near_enough_decrypt matched index.js. This rule detects potentially encrypted content execution, but it's a single low confidence finding. Without further corroborating evidence, it's insufficient to classify the package as malware. The package could be using legitimate obfuscation or encryption techniques for benign purposes.

@next/env@16.0.4Clean
Unverified
Analysed at: 11/24/25, 5:08 PM
Source: https://registry.npmjs.org/@next/env/-/env-16.0.4.tgz
SHA256: 12808c92382a3f36dd1602d3af49f115ff04e02bd87165ef9a318fd24a32941a
Confidence: Medium