-
-
Notifications
You must be signed in to change notification settings - Fork 185
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
This package is being flagged as malware - false positive #306
Comments
Because it's a private package that just coincidentally has the same name as the malicious one, it is indeed a false positive - so whatever tool is flagging this repo is broken, and you should strongly reconsider using a tool that is this naive about npm package names. Duplicate of #303. Duplicate of #291. Duplicate of #288. Duplicate of #304. Duplicate of #305. |
This was referenced Sep 1, 2023
Closed
This was referenced Sep 18, 2023
ljharb
added a commit
that referenced
this issue
Oct 10, 2023
ljharb
added a commit
that referenced
this issue
Oct 10, 2023
ljharb
added a commit
that referenced
this issue
Oct 10, 2023
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Our repo is getting flagged for malware because it of the monorepo-symlink-test private package. Not sure if there is much you can do about it, maybe renaming it or something, but just letting you know.
GHSA-2jcg-qqmg-46q6
The text was updated successfully, but these errors were encountered: