-
-
Notifications
You must be signed in to change notification settings - Fork 44
Open
Labels
enhancementNew feature or requestNew feature or request
Description
Hi, my name is Tamir and I'm a security researcher at Mend.io
I have noticed something strange, I would be happy to get clarifications from you.
the package https://www.npmjs.com/package/atomico-base is pretending to be atomico, while also pretending to be @UpperCod , the creator of Atomico.
the npm user also does not match https://www.npmjs.com/~uppercod
Thanks in advance!
Metadata
Metadata
Assignees
Labels
enhancementNew feature or requestNew feature or request
