Case Studies

Real scans of known-compromised npm packages — with clean rebuilds

event-stream@3.3.4

39
score
WARN
  • New maintainer(s) added: npm
  • Found 2 potential Base64 encoded blob(s)

Clean Rebuild Available

Rebuilt from source (HEAD) Ed25519 signed 7 deps in SBOM
Download .tgz | View SBOM | Full Report

View full report →

lodash@4.17.21

0
score
SAFE

No issues detected

Clean Rebuild Available

Rebuilt from source (4.17.21) Ed25519 signed 0 deps in SBOM
Download .tgz | View SBOM | Full Report

View full report →

ms@2.1.3

30
score
WARN
  • New maintainer(s) added: nick.tracey, vercel-release-bot, matt.straka

Clean Rebuild Available

Rebuilt from source (2.1.3) Ed25519 signed 0 deps in SBOM
Download .tgz | View SBOM | Full Report

View full report →

Scan Your Own Package