SafeDep
Install GitHub App

Summary

Inconclusive evidence. Extension mismatch and high entropy are suspicious but not definitive indicators of malware. Popular project reduces risk.

Verification Record

No verification record available.

Details

The evidences suggest potential anomalies, but they are not conclusive enough to classify the package as malware. The 'Extension Mismatch' and 'very_high_entropy' YARA rule matches raise concerns, but without stronger evidence, it's difficult to determine malicious intent. The expo project is also a popular project with many stars and forks, which makes it less likely to be malicious.

expo-blur@55.0.4Clean
Unverified
Analysed at: 2/3/26, 6:12 AM
Source: https://registry.npmjs.org/expo-blur/-/expo-blur-55.0.4.tgz
SHA256: fe826c1fae85e21f7724f1386f6e44af99dd8e62ab0e3e0e5acbffa6496e8408
Confidence: Medium