Automated package-squatting & slopsquatting detection signals across PyPI and npm — these are automated, unconfirmed signals. Fast adoption alone isn't evidence of wrongdoing; use this to find candidates worth a second look, not to accuse anyone.

Packages published in the last 90 days, ranked by downloads-per-day since publish — only packages with known download data are shown.

Search & filter syntax reference
Same email:, domain:, keyword:, version:, age:<6h filters as the other tabs (age: here filters on top of this tab's own 90-day cutoff, not instead of it).
PackageEcosystem Verdict Score Growth/day Downloads/mo Lines Age Targeted
0.2.5
npm Very Risky 80 ↑ 248.5/day 3728 5,836 15d easy
Author: Unknown
Matched naming pattern: node-easy-vps
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 932 (ACTIVE_COMMUNITY_USE)
Codebase size: 5836 lines, 1.2 MB (LARGE_CODEBASE)
Automated signals flagged:
  • INFOPackage release verified with cryptographic build provenance (npm_slsa_sigstore). Guarantees authentic repository build pipeline and eliminates publisher domain spoofing risk.
  • HIGHPackage registered recently (11 days ago) during the active AI hallucination slopsquatting wave.
  • HIGHLIFECYCLE_SCRIPT: 'postinstall' -> 'node scripts/postinstall.js'
  • HIGHLIFECYCLE_SCRIPT: 'preuninstall' -> 'node scripts/preuninstall.js'
  • HIGHMISSING_SOURCE_REPOSITORY_URL
  • HIGHSOURCE_CODE_ENV_VARS_ACCESS: 'Environment Variable Access (process.env / os.environ)' found in package/dist/services/auth.js:35 (+8 more occurrence(s) elsewhere)
  • HIGHCREDENTIAL_PATH_HARVESTING: 'Registry / Git Credentials (~/.npmrc, ~/.pypirc)' found in package/dist/services/deploy.js:296 (+1 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_DYNAMIC_EXECUTION: 'execSync/spawnSync' found in package/scripts/dev.js:66 (+1 more occurrence(s) elsewhere)

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on npm →
3.35.1
npm Very Risky 100 ↑ 241.9/day 3870 6,436 16d @iamsamyiok/agents
Author: Unknown
Claimed homepage: https://github.com/iamsamyiok/agents-chat
Matched naming pattern: node-@iamsamyiok/agents-agents-chat
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 967 (ACTIVE_COMMUNITY_USE)
Codebase size: 6436 lines, 326.3 kB (LARGE_CODEBASE)
Automated signals flagged:
  • INFOPackage release verified with cryptographic build provenance (npm_slsa_sigstore). Guarantees authentic repository build pipeline and eliminates publisher domain spoofing risk.
  • HIGHPackage registered recently (12 days ago) during the active AI hallucination slopsquatting wave.
  • HIGHLIFECYCLE_SCRIPT: 'postinstall' -> 'node scripts/postinstall.js'
  • HIGHSOURCE_CODE_DYNAMIC_EXECUTION: 'require('child_process')' found in package/app/lib/agent.js:17 (+7 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_DYNAMIC_EXECUTION: 'execSync/spawnSync' found in package/app/lib/agent.js:76 (+4 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_ENV_VARS_ACCESS: 'Environment Variable Access (process.env / os.environ)' found in package/app/lib/agent.js:20 (+14 more occurrence(s) elsewhere)
  • HIGHSYSTEM_PERSISTENCE_TAMPERING: 'System Persistence Implant (systemd/cron/registry)' found in package/bin/agents-chat.js:347
  • HIGHSYSTEM_PERSISTENCE_TAMPERING: 'Systemd / macOS LaunchAgent Persistence' found in package/bin/agents-chat.js:303

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on npm →
3.0.138
npm Very Risky 95 ↑ 167.0/day 14024 17 84d claude
Author: Neural-LLM (support@neural-llm.com)
Claimed homepage: https://neural-llm.com/power-claude
Matched naming pattern: node-claude-power
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 3506 (HIGH_COMMUNITY_ADOPTION)
Codebase size: 17 lines, 2.0 MB (TINY_CODEBASE)
Automated signals flagged:
  • MEDIUMPackage name 'power-claude' matches AI hallucination template [node] + [claude] + [power].
  • HIGHClaims critical enterprise brand identity ('CLAUDE').
  • INFOPackage release verified with cryptographic build provenance (npm_slsa_sigstore). Guarantees authentic repository build pipeline and eliminates publisher domain spoofing risk.
  • HIGHPackage registered recently (79 days ago) during the active AI hallucination slopsquatting wave.
  • HIGHLIFECYCLE_SCRIPT: 'postinstall' -> 'node -e "const{existsSync}=require('fs');const{spawnSync}=require('child_process');const steps=['scripts/release/merge-drivers/register.sh','scripts/release/install-bypass-guard.sh'];for (const s of steps){if(!existsSync(s))continue;const r=spawnSync('bash',[s],{stdio:'inherit'});if(s.includes('register')&&r.status)process.exit(r.status??0);}process.exit(0)"'
  • CRITICALSUSPICIOUS_SHELL_COMMAND: Pattern 'bash' in 'postinstall' script
  • HIGHSOURCE_CODE_DYNAMIC_EXECUTION: 'require('child_process')' found in package/bin/power-claude-proxy.js:2
  • HIGHSOURCE_CODE_ENV_VARS_ACCESS: 'Environment Variable Access (process.env / os.environ)' found in package/bin/power-claude-proxy.js:2 (+2 more occurrence(s) elsewhere)

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on npm →
0.30.10
npm Very Risky 100 ↑ 157.5/day 7089 26,539 45d @addai/node
Author: Unknown
Claimed homepage: https://github.com/just-AddAi/addai-entity-runtime#readme
Matched naming pattern: node-@addai/node-node
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 1772 (ACTIVE_COMMUNITY_USE)
Codebase size: 26539 lines, 1.5 MB (LARGE_CODEBASE)
Automated signals flagged:
  • INFOPackage release verified with cryptographic build provenance (npm_slsa_sigstore). Guarantees authentic repository build pipeline and eliminates publisher domain spoofing risk.
  • HIGHPackage registered recently (43 days ago) during the active AI hallucination slopsquatting wave.
  • HIGHLIFECYCLE_SCRIPT: 'postinstall' -> 'node scripts/fix-pty-helper.js'
  • HIGHSOURCE_CODE_ENV_VARS_ACCESS: 'Environment Variable Access (process.env / os.environ)' found in package/dist/agent-auth.js:77 (+35 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_NETWORK_CALL: 'fetch/axios/XMLHttpRequest' found in package/dist/attachments.js:116 (+10 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_DYNAMIC_EXECUTION: 'require('child_process')' found in package/dist/autostart-linux.js:62 (+25 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_ENCODED_PAYLOAD: 'atob()' found in package/assets/vault-extension/background.js:8
  • HIGHCREDENTIAL_PATH_HARVESTING: 'IDE / AI Agent Configuration Hijacking' found in package/dist/claude-config.js:10 (+7 more occurrence(s) elsewhere)

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on npm →
0.0.1-rc.24
npm Very Risky 77 ↑ 137.1/day 2604 91,398 19d @danceiny/gotry
Author: Unknown
Claimed homepage: https://github.com/Danceiny/gotry#readme
Matched naming pattern: node-@danceiny/gotry-gotry
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 651 (ACTIVE_COMMUNITY_USE)
Codebase size: 91398 lines, 5.3 MB (LARGE_CODEBASE)
Automated signals flagged:
  • INFOPackage release verified with cryptographic build provenance (npm_slsa_sigstore). Guarantees authentic repository build pipeline and eliminates publisher domain spoofing risk.
  • HIGHPackage registered recently (19 days ago) during the active AI hallucination slopsquatting wave.
  • HIGHLIFECYCLE_SCRIPT: 'postinstall' -> 'echo 'GoTry installed. Run: npx @danceiny/gotry web (dsh Web UI on :3080)\nSee: https://github.com/Danceiny/gotry''
  • HIGHSOURCE_CODE_ENV_VARS_ACCESS: 'Environment Variable Access (process.env / os.environ)' found in package/dist/scripts/agent-planning-turn-deadline-e2e.js:155 (+89 more occurrence(s) elsewhere)
  • HIGHCREDENTIAL_PATH_HARVESTING: 'System Credentials (/etc/shadow, /etc/passwd)' found in package/dist/scripts/artifacts-capability-tests.js:125 (+2 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_NETWORK_CALL: 'fetch/axios/XMLHttpRequest' found in package/extension/background.js:117 (+29 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_ENV_VARS_ACCESS: 'Bulk Environment Harvesting' found in package/dist/src/benchmark-environment-bridge.js:425 (+1 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_DYNAMIC_EXECUTION: 'execSync/spawnSync' found in package/dist/scripts/booking-copilot-bin-proof-tests.js:10 (+25 more occurrence(s) elsewhere)

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on npm →
1.1.50
npm Very Risky 115 ↑ 127.6/day 9699 52,778 76d pi
Author: MooCoding
Claimed homepage: https://github.com/ManotLuijiu/pi-harness-runtime#readme
Matched naming pattern: pi-pi-runtime
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 2424 (ACTIVE_COMMUNITY_USE)
Codebase size: 52778 lines, 1.7 MB (LARGE_CODEBASE)
Automated signals flagged:
  • INFOPackage release verified with cryptographic build provenance (npm_slsa_sigstore). Guarantees authentic repository build pipeline and eliminates publisher domain spoofing risk.
  • HIGHPackage registered recently (74 days ago) during the active AI hallucination slopsquatting wave.
  • HIGHLIFECYCLE_SCRIPT: 'postinstall' -> 'mkdir -p ~/.pi-harness-runtime/cookies && node scripts/copy-plugins.js && ([ -f ~/.config/herdr/config.toml ] || mkdir -p ~/.config/herdr && cp config.toml.example ~/.config/herdr/config.toml)'
  • HIGHSOURCE_CODE_NETWORK_CALL: 'fetch/axios/XMLHttpRequest' found in package/packages/observability/dist/alerts.js:215 (+18 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_DYNAMIC_EXECUTION: 'execSync/spawnSync' found in package/packages/project-analyzer/dist/analyzer.js:169 (+11 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_ENV_VARS_ACCESS: 'Environment Variable Access (process.env / os.environ)' found in package/packages/cookie-sanitizer/dist/atomic-write.js:60 (+20 more occurrence(s) elsewhere)
  • HIGHSYSTEM_PERSISTENCE_TAMPERING: 'System Persistence Implant (systemd/cron/registry)' found in package/packages/scheduler-adapter/dist/cron.js:20
  • HIGHSYSTEM_PERSISTENCE_TAMPERING: 'Cron Job Installation / Tampering' found in package/packages/scheduler-adapter/dist/cron.js:41

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on npm →
0.1.5
npm Very Risky 85 ↑ 121.8/day 1949 115,874 16d @xiaoso/dsh
Author: Unknown
Claimed homepage: https://github.com/xiaoso456/dsh-tool-plus#readme
Matched naming pattern: node-@xiaoso/dsh-dsh-tool-plus
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 487 (ACTIVE_COMMUNITY_USE)
Codebase size: 115874 lines, 5.1 MB (LARGE_CODEBASE)
Automated signals flagged:
  • INFOPackage release verified with cryptographic build provenance (npm_slsa_sigstore). Guarantees authentic repository build pipeline and eliminates publisher domain spoofing risk.
  • HIGHPackage registered recently (12 days ago) during the active AI hallucination slopsquatting wave.
  • HIGHLIFECYCLE_SCRIPT: 'postinstall' -> 'node scripts/patch-pi-natives.mjs'
  • HIGHSOURCE_CODE_NETWORK_CALL: 'fetch/axios/XMLHttpRequest' found in package/lib/client.js:1757 (+11 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_ENCODED_PAYLOAD: 'Buffer.from(..., 'base64')' found in package/lib/anthropic-BL6LFDQS.mjs:788 (+9 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_ENCODED_PAYLOAD: 'atob()' found in package/lib/anthropic-CDmj476p.mjs:36 (+4 more occurrence(s) elsewhere)
  • HIGHCREDENTIAL_PATH_HARVESTING: 'AWS Credentials (~/.aws/credentials)' found in package/lib/aws-credentials-B20dliS7.mjs:296
  • HIGHCREDENTIAL_PATH_HARVESTING: 'Cloud Instance Metadata (AWS/GCP/Azure IMDS)' found in package/lib/aws-credentials-B20dliS7.mjs:767 (+2 more occurrence(s) elsewhere)

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on npm →
0.5.76
npm Very Risky 137 ↑ 116.5/day 3378 7,703 29d 9router
Author: Unknown
Matched naming pattern: node-9router-imagefix
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 844 (ACTIVE_COMMUNITY_USE)
Codebase size: 7703 lines, 10.0 MB (LARGE_CODEBASE)
Automated signals flagged:
  • INFOPackage release verified with cryptographic build provenance (npm_slsa_sigstore). Guarantees authentic repository build pipeline and eliminates publisher domain spoofing risk.
  • HIGHPackage registered recently (26 days ago) during the active AI hallucination slopsquatting wave.
  • HIGHLIFECYCLE_SCRIPT: 'postinstall' -> 'node hooks/postinstall.js'
  • HIGHMISSING_SOURCE_REPOSITORY_URL
  • HIGHSOURCE_CODE_ENV_VARS_ACCESS: 'Environment Variable Access (process.env / os.environ)' found in package/app/.next-cli-build/server/chunks/1260.js:1 (+49 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_NETWORK_CALL: 'fetch/axios/XMLHttpRequest' found in package/app/.next-cli-build/static/chunks/1321-d0af01c8bba9082f.js:1 (+75 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_ENCODED_PAYLOAD: 'Buffer.from(..., 'base64')' found in package/app/.next-cli-build/server/chunks/1605.js:1 (+7 more occurrence(s) elsewhere)
  • HIGHSUSPICIOUS_OBFUSCATION: 'Layered Base64 and Decompress Pipeline' found in package/app/.next-cli-build/server/chunks/1605.js:1 (+4 more occurrence(s) elsewhere)

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on npm →
1.6.0
npm Very Risky 92 ↑ 109.6/day 1863 62,026 17d @azure
Author: Unknown
Claimed homepage: https://github.com/azure-id/orc#readme
Matched naming pattern: node-@azure-orc
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 465 (ACTIVE_COMMUNITY_USE)
Codebase size: 62026 lines, 3.1 MB (LARGE_CODEBASE)
Automated signals flagged:
  • INFOPackage release verified with cryptographic build provenance (npm_slsa_sigstore). Guarantees authentic repository build pipeline and eliminates publisher domain spoofing risk.
  • INFOPackage lineage verified as trusted vendor 'microsoft' via repo:github.com/azure.
  • HIGHPackage registered recently (13 days ago) during the active AI hallucination slopsquatting wave.
  • HIGHLIFECYCLE_SCRIPT: 'postinstall' -> 'node -e "try{require('fs').accessSync(require('path').join(__dirname,'bin','cli.js'));console.log('\nORC installed. Run: orc init (or orc init --global)\n')}catch(e){console.error('\n[orc] WARNING: bin/cli.js missing from this install — the repo/publish was incomplete. Reinstall from a complete source.\n')}"'
  • HIGHSOURCE_CODE_NETWORK_CALL: 'fetch/axios/XMLHttpRequest' found in package/bin/webui/js/00-core.js:45 (+1 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_DYNAMIC_EXECUTION: 'require('child_process')' found in package/bin/webui/api.js:23 (+3 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_DYNAMIC_EXECUTION: 'execSync/spawnSync' found in package/bin/webui/api.js:95 (+2 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_ENV_VARS_ACCESS: 'Environment Variable Access (process.env / os.environ)' found in package/bin/webui/api.js:90 (+4 more occurrence(s) elsewhere)

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on npm →
77.0.0
npm Very Risky 132 ↑ 106.8/day 9288 8,221 87d claude
Author: Mohit Aggarwal
Claimed homepage: https://mohitagw15856.github.io/pm-claude-skills/
Matched naming pattern: pm-claude-skills
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 2322 (ACTIVE_COMMUNITY_USE)
Codebase size: 8221 lines, 472.2 kB (LARGE_CODEBASE)
Automated signals flagged:
  • MEDIUMPackage name 'pm-claude-skills' matches AI hallucination template [pm] + [claude] + [skills].
  • HIGHClaims critical enterprise brand identity ('CLAUDE').
  • INFOPackage release verified with cryptographic build provenance (npm_slsa_sigstore). Guarantees authentic repository build pipeline and eliminates publisher domain spoofing risk.
  • INFOLegitimate documentation effort (255 chars with homepage link).
  • HIGHPackage registered recently (82 days ago) during the active AI hallucination slopsquatting wave.
  • CRITICALPackage registered with suspiciously high major version (v77.0.0, major 77) despite recent registration (82 days ago, 99 release(s)), indicating potential dependency confusion attack to shadow internal organization builds.
  • HIGHLIFECYCLE_SCRIPT: 'postinstall' -> 'node bin/postinstall.mjs'
  • HIGHSOURCE_CODE_ENCODED_PAYLOAD: 'atob()' found in package/web/app.js:645 (+1 more occurrence(s) elsewhere)

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on npm →
0.0.10
npm Very Risky 100 ↑ 91.8/day 1928 66,385 21d @xiaobuyu/nodesign
Author: Unknown
Claimed homepage: https://github.com/Xiaokebuyu/Nodesign#readme
Matched naming pattern: node-@xiaobuyu/nodesign-nodesign
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 482 (ACTIVE_COMMUNITY_USE)
Codebase size: 66385 lines, 8.4 MB (LARGE_CODEBASE)
Automated signals flagged:
  • INFOPackage release verified with cryptographic build provenance (npm_slsa_sigstore). Guarantees authentic repository build pipeline and eliminates publisher domain spoofing risk.
  • HIGHPackage registered recently (18 days ago) during the active AI hallucination slopsquatting wave.
  • HIGHLIFECYCLE_SCRIPT: 'postinstall' -> 'node server/ops/fix-sdk-musl.mjs'
  • HIGHSOURCE_CODE_NETWORK_CALL: 'fetch/axios/XMLHttpRequest' found in package/server/engine/stage/display/app.js:43 (+14 more occurrence(s) elsewhere)
  • HIGHCREDENTIAL_PATH_HARVESTING: 'SSH Directory / Private Keys (~/.ssh)' found in package/server/engine/agent/auto-mode-rules.js:68
  • HIGHSOURCE_CODE_ENV_VARS_ACCESS: 'Environment Variable Access (process.env / os.environ)' found in package/server/engine/mcp/tools/browse.js:81 (+60 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_ENCODED_PAYLOAD: 'Buffer.from(..., 'base64')' found in package/server/engine/browse/capture.js:423 (+7 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_ENCODED_PAYLOAD: 'atob()' found in package/web/dist/assets/cytoscape.esm-BjAbmLdb.js:331 (+1 more occurrence(s) elsewhere)

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on npm →
0.6.1
npm Very Risky 130 ↑ 80.4/day 1287 7,741 16d @joyccn/zenrouter
Author: Unknown
Claimed homepage: https://github.com/ZenRouter/ZenRouter#readme
Matched naming pattern: node-@joyccn/zenrouter-zenrouter
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 321 (ACTIVE_COMMUNITY_USE)
Codebase size: 7741 lines, 10.0 MB (LARGE_CODEBASE)
Automated signals flagged:
  • INFOPackage release verified with cryptographic build provenance (npm_slsa_sigstore). Guarantees authentic repository build pipeline and eliminates publisher domain spoofing risk.
  • HIGHPackage registered recently (12 days ago) during the active AI hallucination slopsquatting wave.
  • HIGHLIFECYCLE_SCRIPT: 'postinstall' -> 'node hooks/postinstall.js'
  • HIGHSOURCE_CODE_ENV_VARS_ACCESS: 'Environment Variable Access (process.env / os.environ)' found in package/app/.next-cli-build/server/chunks/1260.js:1 (+52 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_NETWORK_CALL: 'fetch/axios/XMLHttpRequest' found in package/app/.next-cli-build/static/chunks/1321-297fff1e3038e532.js:1 (+75 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_ENCODED_PAYLOAD: 'Buffer.from(..., 'base64')' found in package/app/.next-cli-build/server/chunks/2430.js:2 (+7 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_ENCODED_PAYLOAD: 'atob()' found in package/app/.next-cli-build/server/chunks/2430.js:121 (+4 more occurrence(s) elsewhere)
  • HIGHSUSPICIOUS_OBFUSCATION: 'Layered Base64 and Decompress Pipeline' found in package/app/.next-cli-build/server/chunks/318.js:9 (+4 more occurrence(s) elsewhere)

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on npm →
1.1.12
npm Very Risky 75 ↑ 68.6/day 1852 8,312 27d @bluearch/mission
Author: BlueArch
Claimed homepage: https://xxyjoel.github.io/ba-mission-control
Matched naming pattern: node-@bluearch/mission-mission-control
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 463 (ACTIVE_COMMUNITY_USE)
Codebase size: 8312 lines, 395.5 kB (LARGE_CODEBASE)
Automated signals flagged:
  • INFOPackage release verified with cryptographic build provenance (npm_slsa_sigstore). Guarantees authentic repository build pipeline and eliminates publisher domain spoofing risk.
  • HIGHPackage registered recently (23 days ago) during the active AI hallucination slopsquatting wave.
  • HIGHLIFECYCLE_SCRIPT: 'postinstall' -> 'node scripts/fix-node-pty.mjs'
  • HIGHSOURCE_CODE_DYNAMIC_EXECUTION: 'execSync/spawnSync' found in package/tui/lib/auth.js:24 (+2 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_ENV_VARS_ACCESS: 'Environment Variable Access (process.env / os.environ)' found in package/tui/lib/auth.js:20 (+15 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_NETWORK_CALL: 'fetch/axios/XMLHttpRequest' found in package/tui/lib/slack.js:58
  • HIGHCREDENTIAL_PATH_HARVESTING: 'System Credentials (/etc/shadow, /etc/passwd)' found in package/server/sessionFileTailer.mjs:52
  • INFOSubstantial functional codebase (8312 LOC across 56 file(s)).

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on npm →
1.0.57
npm Very Risky 115 ↑ 65.0/day 5588 5,287 86d @oxiaom/adoremix
Author: Unknown
Matched naming pattern: node-@oxiaom/adoremix-adoremix
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 1397 (ACTIVE_COMMUNITY_USE)
Codebase size: 5287 lines, 3.0 MB (LARGE_CODEBASE)
Automated signals flagged:
  • INFOPackage release verified with cryptographic build provenance (npm_slsa_sigstore). Guarantees authentic repository build pipeline and eliminates publisher domain spoofing risk.
  • HIGHPackage registered recently (82 days ago) during the active AI hallucination slopsquatting wave.
  • HIGHLIFECYCLE_SCRIPT: 'postinstall' -> 'node ./bin/postinstall-hint.js'
  • HIGHMISSING_SOURCE_REPOSITORY_URL
  • HIGHSOURCE_CODE_NETWORK_CALL: 'fetch/axios/XMLHttpRequest' found in package/webui/high/assets/Announce-BxOu3PDa.js:1 (+9 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_DYNAMIC_EXECUTION: 'require('child_process')' found in package/tts/providers/audio8.js:31 (+11 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_DYNAMIC_EXECUTION: 'execSync/spawnSync' found in package/tts/providers/audio8.js:63 (+10 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_NETWORK_CALL: 'require('http(s)')' found in package/tts/providers/audio8.js:35 (+2 more occurrence(s) elsewhere)

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on npm →
0.1.4
pypi SUSPICIOUS 70 ↑ 55.8/day 2454 110 44d chroma
Author: zhenzi0322 (82131529@qq.com)
Claimed homepage: https://pypi.org/project/chroma-term-console/
Matched naming pattern: chroma-chroma-console
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 88 (ACTIVE_COMMUNITY_USE)
Codebase size: 110 lines, 3.9 kB (TINY_CODEBASE)
Automated signals flagged:
  • HIGHClaims critical enterprise brand identity ('CHROMA').
  • HIGHPublisher email '82131529@qq.com' is not affiliated with official vendor domain.
  • MEDIUMPackage published 5+ versions in rapid succession (< 24h) to mimic mature open source maintenance.
  • HIGHPackage registered recently (39 days ago) during the active AI hallucination slopsquatting wave.
  • INFONo malicious install-time hooks or shell cradles detected in package AST.
  • INFOModerate community usage with 920 monthly downloads.

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on PyPI →
0.0.31
npm Very Risky 107 ↑ 55.5/day 3441 2,297 62d @readmagic/workmate
Author: Frandy
Claimed homepage: https://github.com/readmagic/workMate#readme
Matched naming pattern: node-@readmagic/workmate-workmate
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 860 (ACTIVE_COMMUNITY_USE)
Codebase size: 2297 lines, 7.8 MB (LARGE_CODEBASE)
Automated signals flagged:
  • INFOPackage release verified with cryptographic build provenance (npm_slsa_sigstore). Guarantees authentic repository build pipeline and eliminates publisher domain spoofing risk.
  • MEDIUMPackage has empty or near-zero description (potential reservation stub).
  • HIGHPackage registered recently (58 days ago) during the active AI hallucination slopsquatting wave.
  • HIGHLIFECYCLE_SCRIPT: 'postinstall' -> 'node scripts/postinstall.cjs'
  • HIGHSOURCE_CODE_DYNAMIC_EXECUTION: 'require('child_process')' found in package/scripts/postinstall.cjs:27
  • HIGHSOURCE_CODE_DYNAMIC_EXECUTION: 'execSync/spawnSync' found in package/scripts/postinstall.cjs:137 (+2 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_NETWORK_CALL: 'fetch/axios/XMLHttpRequest' found in package/scripts/postinstall.cjs:164 (+10 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_ENV_VARS_ACCESS: 'Environment Variable Access (process.env / os.environ)' found in package/scripts/postinstall.cjs:46 (+84 more occurrence(s) elsewhere)

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on npm →
3.0.5
npm Very Risky 115 ↑ 49.6/day 1835 6,383 37d claude
Author: SilenceSusuka
Claimed homepage: https://github.com/SilenceSusuka/claude-code#readme
Matched naming pattern: claude-claude-silencesusuka
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 458 (ACTIVE_COMMUNITY_USE)
Codebase size: 6383 lines, 8.5 MB (LARGE_CODEBASE)
Automated signals flagged:
  • HIGHClaims critical enterprise brand identity ('CLAUDE').
  • INFOPackage release verified with cryptographic build provenance (npm_slsa_sigstore). Guarantees authentic repository build pipeline and eliminates publisher domain spoofing risk.
  • HIGHPackage registered recently (31 days ago) during the active AI hallucination slopsquatting wave.
  • HIGHLIFECYCLE_SCRIPT: 'postinstall' -> 'node scripts/run-parallel.mjs scripts/postinstall.cjs scripts/setup-chrome-mcp.mjs'
  • HIGHSOURCE_CODE_DYNAMIC_EXECUTION: 'require('child_process')' found in package/scripts/postinstall.cjs:24
  • HIGHSOURCE_CODE_DYNAMIC_EXECUTION: 'execSync/spawnSync' found in package/scripts/postinstall.cjs:127 (+5 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_NETWORK_CALL: 'fetch/axios/XMLHttpRequest' found in package/scripts/postinstall.cjs:155 (+10 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_ENV_VARS_ACCESS: 'Environment Variable Access (process.env / os.environ)' found in package/scripts/postinstall.cjs:42 (+128 more occurrence(s) elsewhere)

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on npm →
0.1.4
npm SUSPICIOUS 95 ↑ 30.1/day 602 16 20d claude
Author: Unknown
Matched naming pattern: node-claude-ink-claude-code-dream-linux-x64
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 150 (MODERATE_USAGE)
Codebase size: 16 lines, 2.0 kB (TINY_CODEBASE)
Automated signals flagged:
  • MEDIUMPackage name '@glide-the/ink-claude-code-dream-linux-x64' matches AI hallucination template [node] + [claude] + [ink-claude-code-dream-linux-x64].
  • HIGHClaims critical enterprise brand identity ('CLAUDE').
  • HIGHPublisher email 'None' is not affiliated with official vendor domain.
  • HIGHPackage registered recently (14 days ago) during the active AI hallucination slopsquatting wave.
  • HIGHMISSING_SOURCE_REPOSITORY_URL
  • INFOModerate community usage with 602 monthly downloads.

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on npm →
0.1.4
npm SUSPICIOUS 95 ↑ 29.4/day 587 16 20d claude
Author: Unknown
Matched naming pattern: node-claude-ink-claude-code-dream
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 146 (MODERATE_USAGE)
Codebase size: 16 lines, 2.0 kB (TINY_CODEBASE)
Automated signals flagged:
  • MEDIUMPackage name '@glide-the/ink-claude-code-dream' matches AI hallucination template [node] + [claude] + [ink-claude-code-dream].
  • HIGHClaims critical enterprise brand identity ('CLAUDE').
  • HIGHPublisher email 'None' is not affiliated with official vendor domain.
  • HIGHPackage registered recently (14 days ago) during the active AI hallucination slopsquatting wave.
  • HIGHMISSING_SOURCE_REPOSITORY_URL
  • INFOModerate community usage with 587 monthly downloads.

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on npm →
4.2.0
pypi SUSPICIOUS 45 ↑ 28.4/day 142 98,847 5d pyspark
Author: Unknown (dev@spark.apache.org)
Claimed homepage: https://pypi.org/project/pyspark-client-rust/
Matched naming pattern: python-pyspark-general
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 142 (MODERATE_USAGE)
Codebase size: 98847 lines, 4.4 MB (LARGE_CODEBASE)
Automated signals flagged:
  • INFOPackage lineage verified as trusted vendor 'apache' via domain:apache.org.
  • MEDIUMPackage published 5+ versions in rapid succession (< 24h) to mimic mature open source maintenance.
  • HIGHPackage registered recently (0 days ago) during the active AI hallucination slopsquatting wave.
  • HIGHSOURCE_CODE_ENV_VARS_ACCESS: 'Environment Variable Access (process.env / os.environ)' found in pyspark/errors/utils.py:372
  • HIGHSOURCE_CODE_ENV_VARS_ACCESS: 'Environment Variable Access (process.env / os.environ)' found in pyspark/find_spark_home.py:30
  • HIGHSOURCE_CODE_ENV_VARS_ACCESS: 'Environment Variable Access (process.env / os.environ)' found in pyspark/logger/worker_io.py:271
  • HIGHSOURCE_CODE_DYNAMIC_EXECUTION: 'Python Subprocess / OS Execution' found in pyspark/ml/torch/distributor.py:474
  • HIGHSOURCE_CODE_ENV_VARS_ACCESS: 'Environment Variable Access (process.env / os.environ)' found in pyspark/ml/torch/distributor.py:139

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on PyPI →
0.0.8
pypi Very Risky 140 ↑ 26.1/day 339 1,791 13d arcaeon
Author: Arcaeon
Claimed homepage: https://pypi.org/project/arcaeon-mcp-vet/
Matched naming pattern: arcaeon-arcaeon-vet
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 339 (MODERATE_USAGE)
Codebase size: 1791 lines, 107.5 kB (LARGE_CODEBASE)
Automated signals flagged:
  • MEDIUMPackage published 5+ versions in rapid succession (< 24h) to mimic mature open source maintenance.
  • HIGHPackage registered recently (9 days ago) during the active AI hallucination slopsquatting wave.
  • HIGHCREDENTIAL_PATH_HARVESTING: 'System Credentials (/etc/shadow, /etc/passwd)' found in arcaeon_mcp_vet-0.0.8/mcp_vet/checks.py:227
  • HIGHSOURCE_CODE_DYNAMIC_EXECUTION: 'Python Subprocess / OS Execution' found in arcaeon_mcp_vet-0.0.8/mcp_vet/checks.py:100
  • HIGHEXFILTRATION_DESTINATION_DETECTED: 'Hardcoded GitHub Personal Access Token' found in arcaeon_mcp_vet-0.0.8/mcp_vet/grade.py:253
  • HIGHCREDENTIAL_PATH_HARVESTING: 'SSH Private Keys (~/.ssh)' found in arcaeon_mcp_vet-0.0.8/mcp_vet/grade.py:289
  • HIGHCREDENTIAL_PATH_HARVESTING: 'SSH Directory / Private Keys (~/.ssh)' found in arcaeon_mcp_vet-0.0.8/mcp_vet/grade.py:289
  • HIGHSOURCE_CODE_ENV_VARS_ACCESS: 'Environment Variable Access (process.env / os.environ)' found in arcaeon_mcp_vet-0.0.8/mcp_vet/grade.py:280

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on PyPI →
0.1.0
pypi SUSPICIOUS 75 ↑ 21.6/day 108 4,004 5d kittykode
Author: Chimi the Creator
Claimed homepage: https://pypi.org/project/kittykode/
Matched naming pattern: python-kittykode-general
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 108 (MODERATE_USAGE)
Codebase size: 4004 lines, 194.3 kB (LARGE_CODEBASE)
Automated signals flagged:
  • MEDIUMPackage published 5+ versions in rapid succession (< 24h) to mimic mature open source maintenance.
  • HIGHPackage registered recently (0 days ago) during the active AI hallucination slopsquatting wave.
  • CRITICALMODULE_TOPLEVEL_EXECUTION: 'os.system' executed at module scope (runs on import) in kittykode-0.1.0/freeagent/cli.py:98
  • HIGHSOURCE_CODE_DYNAMIC_EXECUTION: 'Python Subprocess / OS Execution' found in kittykode-0.1.0/freeagent/cli.py:98
  • HIGHSOURCE_CODE_ENV_VARS_ACCESS: 'Environment Variable Access (process.env / os.environ)' found in kittykode-0.1.0/freeagent/cli.py:99
  • HIGHSOURCE_CODE_DYNAMIC_EXECUTION: 'Python Subprocess / OS Execution' found in kittykode-0.1.0/freeagent/tools.py:109
  • HIGHSOURCE_CODE_DYNAMIC_EXECUTION: 'Python Subprocess / OS Execution' found in kittykode-0.1.0/kitty/cli.py:97
  • HIGHSOURCE_CODE_ENV_VARS_ACCESS: 'Environment Variable Access (process.env / os.environ)' found in kittykode-0.1.0/kitty/config.py:39

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on PyPI →
0.9.10
npm Very Risky 195 ↑ 19.2/day 1150 543,139 60d claude
Author: Unknown
Claimed homepage: https://github.com/akasecurity/ai-tc/tree/main/plugins/claude-code
Matched naming pattern: node-claude-ai-tc-claude-code
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 287 (ACTIVE_COMMUNITY_USE)
Codebase size: 543139 lines, 21.5 MB (LARGE_CODEBASE)
Automated signals flagged:
  • MEDIUMPackage name '@akasecurity/ai-tc-claude-code' matches AI hallucination template [node] + [claude] + [ai-tc-claude-code].
  • HIGHClaims critical enterprise brand identity ('CLAUDE').
  • HIGHPublisher email 'None' is not affiliated with official vendor domain.
  • HIGHPackage registered recently (55 days ago) during the active AI hallucination slopsquatting wave.
  • HIGHEXFILTRATION_DESTINATION_DETECTED: 'Hardcoded GitHub Personal Access Token' found in package/scripts/apply-suppressions.js:35037 (+10 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_DYNAMIC_EXECUTION: 'eval()' found in package/scripts/apply-suppressions.js:33671 (+10 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_DYNAMIC_EXECUTION: 'execSync/spawnSync' found in package/scripts/apply-suppressions.js:33433 (+11 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_DYNAMIC_EXECUTION: 'Python Subprocess / OS Execution' found in package/scripts/apply-suppressions.js:33454 (+10 more occurrence(s) elsewhere)

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on npm →
0.8.8
npm Very Risky 122 ↑ 18.5/day 1315 6,750 71d @rsalmn/extremerouter
Author: rsalmn
Claimed homepage: https://github.com/rsalmn/extremerouter
Matched naming pattern: node-@rsalmn/extremerouter-extremerouter
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 328 (ACTIVE_COMMUNITY_USE)
Codebase size: 6750 lines, 12.8 MB (LARGE_CODEBASE)
Automated signals flagged:
  • INFOPackage release verified with cryptographic build provenance (npm_slsa_sigstore). Guarantees authentic repository build pipeline and eliminates publisher domain spoofing risk.
  • HIGHPackage registered recently (68 days ago) during the active AI hallucination slopsquatting wave.
  • HIGHLIFECYCLE_SCRIPT: 'postinstall' -> 'node hooks/postinstall.js'
  • HIGHCREDENTIAL_PATH_HARVESTING: 'IDE / AI Agent Configuration Hijacking' found in package/app/.next-cli-build/server/chunks/1194.js:1 (+3 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_NETWORK_CALL: 'fetch/axios/XMLHttpRequest' found in package/app/.next-cli-build/server/chunks/1194.js:23 (+83 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_ENV_VARS_ACCESS: 'Environment Variable Access (process.env / os.environ)' found in package/app/.next-cli-build/server/chunks/1194.js:23 (+45 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_ENCODED_PAYLOAD: 'Buffer.from(..., 'base64')' found in package/app/.next-cli-build/server/chunks/1241.js:1 (+6 more occurrence(s) elsewhere)
  • HIGHSUSPICIOUS_OBFUSCATION: 'Layered Base64 and Decompress Pipeline' found in package/app/.next-cli-build/server/chunks/1241.js:1 (+3 more occurrence(s) elsewhere)

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on npm →
0.1.1
pypi Possible Squatted Stub 75 ↑ 18.2/day 437 1 24d ledger
Author: Jaymin Bhan (jayminbhan@gmail.com)
Claimed homepage: https://pypi.org/project/lm-eval-ledger/
Matched naming pattern: lm-ledger-ledger
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 197 (MODERATE_USAGE)
Codebase size: 1 lines, 22 Bytes (EMPTY_STUB)
Automated signals flagged:
  • MEDIUMPackage name 'lm-eval-ledger' matches AI hallucination template [lm] + [ledger] + [ledger].
  • HIGHClaims critical enterprise brand identity ('LEDGER').
  • HIGHPublisher email 'jayminbhan@gmail.com' is not affiliated with official vendor domain.
  • MEDIUMPackage has empty or near-zero description (potential reservation stub).
  • MEDIUMPackage published 5+ versions in rapid succession (< 24h) to mimic mature open source maintenance.
  • HIGHPackage registered recently (23 days ago) during the active AI hallucination slopsquatting wave.
  • INFONo malicious install-time hooks or shell cradles detected in package AST.
  • MEDIUMPackage is an empty placeholder (1 LOC, 1 file(s), 22 bytes).

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on PyPI →
0.34.0
npm SUSPICIOUS 95 ↑ 17.8/day 694 19 39d llama
Author: Unknown
Matched naming pattern: offrouter-llama-cpp
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 173 (MODERATE_USAGE)
Codebase size: 19 lines, 1.2 kB (TINY_CODEBASE)
Automated signals flagged:
  • MEDIUMPackage name 'offrouter-llama-cpp' matches AI hallucination template [offrouter] + [llama] + [cpp].
  • HIGHClaims critical enterprise brand identity ('LLAMA').
  • HIGHPublisher email 'None' is not affiliated with official vendor domain.
  • HIGHPackage registered recently (34 days ago) during the active AI hallucination slopsquatting wave.
  • HIGHMISSING_SOURCE_REPOSITORY_URL
  • INFOModerate community usage with 694 monthly downloads.

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on npm →
0.0.0-reserved
npm SUSPICIOUS 80 ↑ 17.3/day 798 67 46d ripple
Author: Unknown
Claimed homepage: https://github.com/trezor/trezor-suite#readme
Matched naming pattern: node-ripple-network-ripple
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 199 (MODERATE_USAGE)
Codebase size: 67 lines, 2.7 kB (TINY_CODEBASE)
Automated signals flagged:
  • MEDIUMPackage name '@trezor/network-ripple' matches AI hallucination template [node] + [ripple] + [network-ripple].
  • HIGHClaims critical enterprise brand identity ('RIPPLE').
  • HIGHPublisher email 'None' is not affiliated with official vendor domain.
  • HIGHPackage registered recently (41 days ago) during the active AI hallucination slopsquatting wave.
  • INFONo malicious install-time hooks or shell cradles detected in package AST.
  • INFOModerate community usage with 798 monthly downloads.

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on npm →
0.1.1
npm Very Risky 105 ↑ 16.2/day 422 50,880 26d deepseek
Author: Unknown
Claimed homepage: https://github.com/hexingyuofficial/xy-deepseek-pet#readme
Matched naming pattern: xy-deepseek-pet
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 105 (MODERATE_USAGE)
Codebase size: 50880 lines, 2.4 MB (LARGE_CODEBASE)
Automated signals flagged:
  • MEDIUMPackage name 'xy-deepseek-pet' matches AI hallucination template [xy] + [deepseek] + [pet].
  • HIGHClaims critical enterprise brand identity ('DEEPSEEK').
  • INFOPackage release verified with cryptographic build provenance (npm_slsa_sigstore). Guarantees authentic repository build pipeline and eliminates publisher domain spoofing risk.
  • HIGHPackage registered recently (22 days ago) during the active AI hallucination slopsquatting wave.
  • HIGHSOURCE_CODE_ENCODED_PAYLOAD: 'atob()' found in package/lib/client.js:1588 (+3 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_DYNAMIC_EXECUTION: 'new Function()' found in package/lib/index.js:724
  • HIGHSOURCE_CODE_DYNAMIC_EXECUTION: 'execSync/spawnSync' found in package/lib/index.js:4598 (+1 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_ENCODED_PAYLOAD: 'Buffer.from(..., 'base64')' found in package/lib/index.js:546

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on npm →
1.0.0
pypi SUSPICIOUS 75 ↑ 15.0/day 105 757 7d simpliai
Author: Unknown
Claimed homepage: https://pypi.org/project/simpliai/
Matched naming pattern: python-simpliai-general
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 105 (MODERATE_USAGE)
Codebase size: 757 lines, 26.9 kB (MODERATE_CODEBASE)
Automated signals flagged:
  • MEDIUMPackage published 5+ versions in rapid succession (< 24h) to mimic mature open source maintenance.
  • HIGHPackage registered recently (1 days ago) during the active AI hallucination slopsquatting wave.
  • CRITICALMODULE_TOPLEVEL_EXECUTION: 'os.system' executed at module scope (runs on import) in simpliai-1.0.0/simpliai/codes/ai_prac1.py:78
  • CRITICALMODULE_TOPLEVEL_EXECUTION: 'os.system' executed at module scope (runs on import) in simpliai-1.0.0/simpliai/codes/ai_prac1.py:92
  • HIGHSOURCE_CODE_DYNAMIC_EXECUTION: 'Python Subprocess / OS Execution' found in simpliai-1.0.0/simpliai/codes/ai_prac1.py:78
  • INFOSubstantial functional codebase (757 LOC across 14 file(s)).
  • INFOModerate community usage with 105 monthly downloads.
  • MEDIUMPackage executes code at install/import time, but no exfiltration destination, credential access, encoded payload, obfuscation, shell cradle, or persistence primitive corroborates a weaponized payload. Downgraded from MALICIOUS to SUSPICIOUS pending manual review.

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on PyPI →
3.3.73
npm Very Risky 135 ↑ 14.8/day 754 142,219 51d @underpostnet/cyberia
Author: https://github.com/underpostnet
Claimed homepage: https://github.com/underpostnet/engine-cyberia#readme
Matched naming pattern: node-@underpostnet/cyberia-cyberia
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 188 (MODERATE_USAGE)
Codebase size: 142219 lines, 6.3 MB (LARGE_CODEBASE)
Automated signals flagged:
  • INFOPackage release verified with cryptographic build provenance (npm_slsa_sigstore). Guarantees authentic repository build pipeline and eliminates publisher domain spoofing risk.
  • HIGHPackage registered recently (50 days ago) during the active AI hallucination slopsquatting wave.
  • HIGHLIFECYCLE_SCRIPT: 'install' -> 'npm run install:global && npm run install:test'
  • HIGHSOURCE_CODE_ENV_VARS_ACCESS: 'Environment Variable Access (process.env / os.environ)' found in package/src/cli/app.js:73 (+62 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_NETWORK_CALL: 'fetch/axios/XMLHttpRequest' found in package/src/client/services/atlas-sprite-sheet/atlas-sprite-sheet.service.js:10 (+36 more occurrence(s) elsewhere)
  • HIGHSOURCE_CODE_ENCODED_PAYLOAD: 'atob()' found in package/src/client/components/core/Auth.js:117
  • HIGHSOURCE_CODE_ENV_VARS_ACCESS: 'Sensitive Token Harvesting' found in package/src/server/storage/backup.js:60 (+6 more occurrence(s) elsewhere)
  • HIGHCREDENTIAL_PATH_HARVESTING: 'SSH Private Keys (~/.ssh)' found in package/src/cli/baremetal.js:897 (+1 more occurrence(s) elsewhere)

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on npm →
6.9.1
pypi SUSPICIOUS 75 ↑ 14.2/day 171 15,525 12d chatautox
Author: ChatAutoX
Claimed homepage: https://pypi.org/project/chatautox/
Matched naming pattern: python-chatautox-core
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 29 (MODERATE_USAGE)
Codebase size: 15525 lines, 808.6 kB (LARGE_CODEBASE)
Automated signals flagged:
  • MEDIUMPackage published 5+ versions in rapid succession (< 24h) to mimic mature open source maintenance.
  • HIGHPackage registered recently (10 days ago) during the active AI hallucination slopsquatting wave.
  • MEDIUMPackage registered with suspiciously high major version (v6.9.1, major 6) despite recent registration (10 days ago, 1 release(s)), indicating potential dependency confusion attack to shadow internal organization builds.
  • CRITICALMODULE_TOPLEVEL_EXECUTION: 'subprocess.Popen' executed at module scope (runs on import) in chatautox/uia/uiautomation.py:8489
  • HIGHSOURCE_CODE_DYNAMIC_EXECUTION: 'Python Subprocess / OS Execution' found in chatautox/uia/uiautomation.py:8494
  • HIGHSOURCE_CODE_ENV_VARS_ACCESS: 'Environment Variable Access (process.env / os.environ)' found in chatautox/uia/uiautomation.py:156
  • HIGHBUNDLED_NATIVE_BINARY: Unexpected compiled binary 'chatautox/uia/bin/UIAutomationClient_VC140_X64.dll' in wheel archive
  • INFOSubstantial functional codebase (15525 LOC across 16 file(s)).

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on PyPI →
0.1.2
pypi SUSPICIOUS 95 ↑ 12.6/day 139 25 11d llamaindex
Author: U.CASH
Claimed homepage: https://pypi.org/project/llamaindex-ucash/
Matched naming pattern: python-llamaindex-ucash
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 15 (MODERATE_USAGE)
Codebase size: 25 lines, 1.1 kB (TINY_CODEBASE)
Automated signals flagged:
  • MEDIUMPackage name 'llamaindex-ucash' matches AI hallucination template [python] + [llamaindex] + [ucash].
  • HIGHClaims critical enterprise brand identity ('LLAMAINDEX').
  • HIGHPublisher email 'None' is not affiliated with official vendor domain.
  • MEDIUMPackage published 5+ versions in rapid succession (< 24h) to mimic mature open source maintenance.
  • HIGHPackage registered recently (10 days ago) during the active AI hallucination slopsquatting wave.
  • INFONo malicious install-time hooks or shell cradles detected in package AST.
  • INFOModerate community usage with 139 monthly downloads.

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on PyPI →
0.1.1
npm SUSPICIOUS 95 ↑ 12.2/day 304 34 25d cursor
Author: Unknown
Matched naming pattern: node-cursor-runner-plugin-cursor
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 76 (MODERATE_USAGE)
Codebase size: 34 lines, 12.1 kB (TINY_CODEBASE)
Automated signals flagged:
  • MEDIUMPackage name '@ablehi/runner-plugin-cursor' matches AI hallucination template [node] + [cursor] + [runner-plugin-cursor].
  • HIGHClaims critical enterprise brand identity ('CURSOR').
  • HIGHPublisher email 'None' is not affiliated with official vendor domain.
  • HIGHPackage registered recently (19 days ago) during the active AI hallucination slopsquatting wave.
  • HIGHMISSING_SOURCE_REPOSITORY_URL
  • HIGHSOURCE_CODE_ENV_VARS_ACCESS: 'Environment Variable Access (process.env / os.environ)' found in package/dist/index.js:2
  • INFOModerate community usage with 304 monthly downloads.

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on npm →
0.0.1
pypi Possible Squatted Stub 75 ↑ 11.5/day 126 2 11d hyperliquid
Author: Unknown
Claimed homepage: https://pypi.org/project/hyperliquid-bot/
Matched naming pattern: python-hyperliquid-bot
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 126 (MODERATE_USAGE)
Codebase size: 2 lines, 104 Bytes (EMPTY_STUB)
Automated signals flagged:
  • MEDIUMPackage name 'hyperliquid-bot' matches AI hallucination template [python] + [hyperliquid] + [bot].
  • HIGHClaims critical enterprise brand identity ('HYPERLIQUID').
  • HIGHPublisher email 'None' is not affiliated with official vendor domain.
  • MEDIUMPackage published 5+ versions in rapid succession (< 24h) to mimic mature open source maintenance.
  • HIGHPackage registered recently (10 days ago) during the active AI hallucination slopsquatting wave.
  • INFONo malicious install-time hooks or shell cradles detected in package AST.
  • MEDIUMPackage is an empty placeholder (2 LOC, 1 file(s), 104 bytes).
  • INFOModerate community usage with 126 monthly downloads.

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on PyPI →
0.2.1
npm Very Risky 110 ↑ 10.6/day 434 94 41d ledger
Author: Unknown
Matched naming pattern: node-ledger-pd-ledger
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 108 (MODERATE_USAGE)
Codebase size: 94 lines, 4.8 kB (TINY_CODEBASE)
Automated signals flagged:
  • MEDIUMPackage name '@yibi/pd-ledger' matches AI hallucination template [node] + [ledger] + [pd-ledger].
  • HIGHClaims critical enterprise brand identity ('LEDGER').
  • INFOPackage release verified with cryptographic build provenance (npm_slsa_sigstore). Guarantees authentic repository build pipeline and eliminates publisher domain spoofing risk.
  • HIGHPackage registered recently (36 days ago) during the active AI hallucination slopsquatting wave.
  • HIGHMISSING_SOURCE_REPOSITORY_URL
  • HIGHSOURCE_CODE_DYNAMIC_EXECUTION: 'require('child_process')' found in package/bin/install.js:20
  • HIGHSOURCE_CODE_DYNAMIC_EXECUTION: 'execSync/spawnSync' found in package/bin/install.js:40
  • HIGHSYSTEM_PERSISTENCE_TAMPERING: 'System Persistence Implant (systemd/cron/registry)' found in package/bin/install.js:89

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on npm →
0.2.112
npm SUSPICIOUS 95 ↑ 10.4/day 560 7 54d grok
Author: nuwax-ai
Matched naming pattern: nuwax-grok-build
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 140 (MODERATE_USAGE)
Codebase size: 7 lines, 368 Bytes (TINY_CODEBASE)
Automated signals flagged:
  • MEDIUMPackage name 'nuwax-grok-build-darwin-x64' matches AI hallucination template [nuwax] + [grok] + [build].
  • HIGHClaims critical enterprise brand identity ('GROK').
  • HIGHPublisher email 'None' is not affiliated with official vendor domain.
  • HIGHPackage registered recently (49 days ago) during the active AI hallucination slopsquatting wave.
  • HIGHMISSING_SOURCE_REPOSITORY_URL
  • INFOModerate community usage with 560 monthly downloads.

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on npm →
0.1.0
pypi SUSPICIOUS 70 ↑ 9.9/day 139 128 14d llama
Author: TruthBear
Claimed homepage: https://pypi.org/project/llama-index-tools-truth-bear-gauge/
Matched naming pattern: llama-llama-tools
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 31 (MODERATE_USAGE)
Codebase size: 128 lines, 5.6 kB (TINY_CODEBASE)
Automated signals flagged:
  • HIGHClaims critical enterprise brand identity ('LLAMA').
  • HIGHPublisher email 'None' is not affiliated with official vendor domain.
  • MEDIUMPackage published 5+ versions in rapid succession (< 24h) to mimic mature open source maintenance.
  • HIGHPackage registered recently (10 days ago) during the active AI hallucination slopsquatting wave.
  • INFONo malicious install-time hooks or shell cradles detected in package AST.
  • INFOModerate community usage with 139 monthly downloads.

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on PyPI →
0.1.0
pypi SUSPICIOUS 80 ↑ 9.5/day 639 20 67d claude
Author: Unknown
Claimed homepage: https://pypi.org/project/pwm-agent-claude-gpu/
Matched naming pattern: pwm-claude-claude
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 65 (MODERATE_USAGE)
Codebase size: 20 lines, 941 Bytes (TINY_CODEBASE)
Automated signals flagged:
  • MEDIUMPackage name 'pwm-agent-claude-gpu' matches AI hallucination template [pwm] + [claude] + [claude].
  • HIGHClaims critical enterprise brand identity ('CLAUDE').
  • HIGHPublisher email 'None' is not affiliated with official vendor domain.
  • HIGHPackage registered recently (62 days ago) during the active AI hallucination slopsquatting wave.
  • INFONo malicious install-time hooks or shell cradles detected in package AST.
  • INFOModerate community usage with 166 monthly downloads.

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on PyPI →
5.0.2
npm SUSPICIOUS 95 ↑ 9.2/day 388 49 42d stripe
Author: Unknown
Matched naming pattern: zova-stripe-pay
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 97 (MODERATE_USAGE)
Codebase size: 49 lines, 1.6 kB (TINY_CODEBASE)
Automated signals flagged:
  • MEDIUMPackage name 'zova-module-pay-stripe' matches AI hallucination template [zova] + [stripe] + [pay].
  • HIGHClaims critical enterprise brand identity ('STRIPE').
  • HIGHPublisher email 'None' is not affiliated with official vendor domain.
  • MEDIUMPackage has empty or near-zero description (potential reservation stub).
  • HIGHPackage registered recently (37 days ago) during the active AI hallucination slopsquatting wave.
  • MEDIUMPackage registered with suspiciously high major version (v5.0.2, major 5) despite recent registration (37 days ago, 2 release(s)), indicating potential dependency confusion attack to shadow internal organization builds.
  • HIGHMISSING_SOURCE_REPOSITORY_URL
  • INFOModerate community usage with 388 monthly downloads.

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on npm →
1.0.5
npm SUSPICIOUS 80 ↑ 8.7/day 443 119 51d cursor
Author: Maggie
Matched naming pattern: cursor-cursor-funtech
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 110 (MODERATE_USAGE)
Codebase size: 119 lines, 5.1 kB (TINY_CODEBASE)
Automated signals flagged:
  • HIGHClaims critical enterprise brand identity ('CURSOR').
  • HIGHPublisher email 'None' is not affiliated with official vendor domain.
  • HIGHPackage registered recently (45 days ago) during the active AI hallucination slopsquatting wave.
  • HIGHLIFECYCLE_SCRIPT: 'postinstall' -> 'node ./scripts/install.js'
  • HIGHSOURCE_CODE_ENV_VARS_ACCESS: 'Environment Variable Access (process.env / os.environ)' found in package/scripts/install.js:17
  • INFOModerate community usage with 443 monthly downloads.

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on npm →
0.2.0
pypi SUSPICIOUS 70 ↑ 8.4/day 101 44 12d llama
Author: HPE
Claimed homepage: https://pypi.org/project/llama-index-retrievers-alletra-x10000-retriever/
Matched naming pattern: llama-llama-retrievers
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 101 (MODERATE_USAGE)
Codebase size: 44 lines, 1.7 kB (TINY_CODEBASE)
Automated signals flagged:
  • HIGHClaims critical enterprise brand identity ('LLAMA').
  • HIGHPublisher email 'None' is not affiliated with official vendor domain.
  • MEDIUMPackage published 5+ versions in rapid succession (< 24h) to mimic mature open source maintenance.
  • HIGHPackage registered recently (10 days ago) during the active AI hallucination slopsquatting wave.
  • INFONo malicious install-time hooks or shell cradles detected in package AST.
  • INFOModerate community usage with 101 monthly downloads.

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on PyPI →
0.1.0a4
pypi SUSPICIOUS 90 ↑ 8.3/day 365 148 44d google
Author: Blazing Customs
Claimed homepage: https://pypi.org/project/ppx-google-adk/
Matched naming pattern: ppx-google-adk
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 17 (MODERATE_USAGE)
Codebase size: 148 lines, 6.3 kB (TINY_CODEBASE)
Automated signals flagged:
  • MEDIUMPackage name 'ppx-google-adk' matches AI hallucination template [ppx] + [google] + [adk].
  • HIGHClaims critical enterprise brand identity ('GOOGLE').
  • HIGHPublisher email 'None' is not affiliated with official vendor domain.
  • HIGHPackage registered recently (39 days ago) during the active AI hallucination slopsquatting wave.
  • INFONo malicious install-time hooks or shell cradles detected in package AST.

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on PyPI →
0.0.1
npm SUSPICIOUS 80 ↑ 7.5/day 179 49 24d arbitrum
Author: dushaobindoudou
Claimed homepage: https://github.com/dushaobindoudou/dsh-arbitrum#readme
Matched naming pattern: node-arbitrum-dsh
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 44 (MODERATE_USAGE)
Codebase size: 49 lines, 2.0 kB (TINY_CODEBASE)
Automated signals flagged:
  • MEDIUMPackage name 'dsh-arbitrum' matches AI hallucination template [node] + [arbitrum] + [dsh].
  • HIGHClaims critical enterprise brand identity ('ARBITRUM').
  • HIGHPublisher email 'None' is not affiliated with official vendor domain.
  • HIGHPackage registered recently (19 days ago) during the active AI hallucination slopsquatting wave.
  • INFONo malicious install-time hooks or shell cradles detected in package AST.
  • INFOModerate community usage with 196 monthly downloads.

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on npm →
0.0.1
npm SUSPICIOUS 80 ↑ 7.3/day 183 32 25d workspace
Author: dushaobindoudou
Claimed homepage: https://github.com/dushaobindoudou/dsh-workspace#readme
Matched naming pattern: node-workspace-dsh
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 45 (MODERATE_USAGE)
Codebase size: 32 lines, 1.3 kB (TINY_CODEBASE)
Automated signals flagged:
  • MEDIUMPackage name 'dsh-workspace' matches AI hallucination template [node] + [workspace] + [dsh].
  • HIGHClaims critical enterprise brand identity ('WORKSPACE').
  • HIGHPublisher email 'None' is not affiliated with official vendor domain.
  • HIGHPackage registered recently (20 days ago) during the active AI hallucination slopsquatting wave.
  • INFONo malicious install-time hooks or shell cradles detected in package AST.
  • INFOModerate community usage with 183 monthly downloads.

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on npm →
0.0.2
pypi SUSPICIOUS 70 ↑ 7.1/day 233 60 33d google
Author: wordstotech
Claimed homepage: https://pypi.org/project/google-ai-mode-scraper-api/
Matched naming pattern: google-google-mode
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 18 (MODERATE_USAGE)
Codebase size: 60 lines, 2.5 kB (TINY_CODEBASE)
Automated signals flagged:
  • HIGHClaims critical enterprise brand identity ('GOOGLE').
  • HIGHPublisher email 'None' is not affiliated with official vendor domain.
  • MEDIUMPackage published 5+ versions in rapid succession (< 24h) to mimic mature open source maintenance.
  • HIGHPackage registered recently (28 days ago) during the active AI hallucination slopsquatting wave.
  • INFONo malicious install-time hooks or shell cradles detected in package AST.
  • INFOModerate community usage with 250 monthly downloads.

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on PyPI →
0.0.1
npm SUSPICIOUS 80 ↑ 6.8/day 171 30 25d supabase
Author: dushaobindoudou
Claimed homepage: https://github.com/dushaobindoudou/dsh-supabase#readme
Matched naming pattern: node-supabase-dsh
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 42 (MODERATE_USAGE)
Codebase size: 30 lines, 1.2 kB (TINY_CODEBASE)
Automated signals flagged:
  • MEDIUMPackage name 'dsh-supabase' matches AI hallucination template [node] + [supabase] + [dsh].
  • HIGHClaims critical enterprise brand identity ('SUPABASE').
  • HIGHPublisher email 'None' is not affiliated with official vendor domain.
  • HIGHPackage registered recently (20 days ago) during the active AI hallucination slopsquatting wave.
  • INFONo malicious install-time hooks or shell cradles detected in package AST.
  • INFOModerate community usage with 171 monthly downloads.

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on npm →
0.1.1
pypi SUSPICIOUS 80 ↑ 6.5/day 246 76 38d llama
Author: Ice Phi
Claimed homepage: https://pypi.org/project/llama-index-guardrails-icephi/
Matched naming pattern: llama-llama-guardrails
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 16 (MODERATE_USAGE)
Codebase size: 76 lines, 3.2 kB (TINY_CODEBASE)
Automated signals flagged:
  • HIGHClaims critical enterprise brand identity ('LLAMA').
  • HIGHPublisher email 'None' is not affiliated with official vendor domain.
  • MEDIUMPackage published 5+ versions in rapid succession (< 24h) to mimic mature open source maintenance.
  • HIGHPackage registered recently (33 days ago) during the active AI hallucination slopsquatting wave.
  • HIGHSOURCE_CODE_ENV_VARS_ACCESS: 'Environment Variable Access (process.env / os.environ)' found in llama_index_guardrails_icephi-0.1.1/llama_index/guardrails/icephi/base.py:38

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on PyPI →
0.1.0
pypi SUSPICIOUS 95 ↑ 6.5/day 142 44 22d stripe
Author: Aldane Hutchinson
Claimed homepage: https://pypi.org/project/flaxon-stripe/
Matched naming pattern: python-stripe-flaxon
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 142 (MODERATE_USAGE)
Codebase size: 44 lines, 2.2 kB (TINY_CODEBASE)
Automated signals flagged:
  • MEDIUMPackage name 'flaxon-stripe' matches AI hallucination template [python] + [stripe] + [flaxon].
  • HIGHClaims critical enterprise brand identity ('STRIPE').
  • HIGHPublisher email 'None' is not affiliated with official vendor domain.
  • MEDIUMPackage published 5+ versions in rapid succession (< 24h) to mimic mature open source maintenance.
  • HIGHPackage registered recently (17 days ago) during the active AI hallucination slopsquatting wave.
  • INFONo malicious install-time hooks or shell cradles detected in package AST.
  • INFOModerate community usage with 162 monthly downloads.

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on PyPI →
0.2.117
npm SUSPICIOUS 95 ↑ 6.2/day 268 7 43d grok
Author: nuwax-ai
Matched naming pattern: node-grok-nuwax-grok-win32-x64
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 67 (MODERATE_USAGE)
Codebase size: 7 lines, 382 Bytes (TINY_CODEBASE)
Automated signals flagged:
  • MEDIUMPackage name '@nuwax-ai/nuwax-grok-win32-x64' matches AI hallucination template [node] + [grok] + [nuwax-grok-win32-x64].
  • HIGHClaims critical enterprise brand identity ('GROK').
  • HIGHPublisher email 'None' is not affiliated with official vendor domain.
  • HIGHPackage registered recently (38 days ago) during the active AI hallucination slopsquatting wave.
  • HIGHMISSING_SOURCE_REPOSITORY_URL
  • HIGHBUNDLED_NATIVE_BINARY: Unexpected compiled binary 'package/bin/grok.exe' in npm tarball
  • INFOModerate community usage with 268 monthly downloads.

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on npm →
1.0.0
npm SUSPICIOUS 80 ↑ 5.8/day 167 37 29d grok
Author: John.j
Claimed homepage: https://github.com/john-j/dsh-grok#readme
Matched naming pattern: node-grok-dsh
Official vendor account: No — publisher domain doesn't match the brand it names
Weekly downloads: 41 (MODERATE_USAGE)
Codebase size: 37 lines, 1.4 kB (TINY_CODEBASE)
Automated signals flagged:
  • MEDIUMPackage name 'dsh-grok' matches AI hallucination template [node] + [grok] + [dsh].
  • HIGHClaims critical enterprise brand identity ('GROK').
  • HIGHPublisher email 'None' is not affiliated with official vendor domain.
  • HIGHPackage registered recently (24 days ago) during the active AI hallucination slopsquatting wave.
  • INFONo malicious install-time hooks or shell cradles detected in package AST.
  • INFOModerate community usage with 167 monthly downloads.

Fast growth plus these signals is worth a look; fast growth alone is not evidence of wrongdoing.

View package on npm →

LINK COPIED TO CLIPBOARD