The package matched the multiple_gcc_high YARA rule, but this is not sufficient evidence to classify it as malware.
No verification record available.
The YARA rule multiple_gcc_high matched because the .node file was built with multiple versions of GCC. While unusual, this is not necessarily indicative of malicious intent, especially given the package's association with the reputable rollup project. Without stronger evidence, it is not safe to classify this package as malware.