Open-source atomic malware analysis

Analyze another

homeofe/supply-chain-guard v5.25.4

TAR.GZ
Verdict: SUSPICIOUS
“Open-source supply-chain security scanner for npm, PyPI, Cargo, Go, RubyGems, Composer, NuGet, Docker, VS Code extensions, GitHub Actions,…”
AI legitimate security scanner with test fixtures

Loading file contents…

Loading traits…

Identity

SHA-256 098c2eea9702b97586c83ec445f589e115d94fb3139dc85cf8df565382b4d753
Canonical SHA-256 0005e065b0500c85e7cf3c4dc856b9a1282084d4405c7c17fafa9ee3f2143aab
Filename homeofe-supply-chain-guard-v5.25.4.tar.gz
Package homeofe/supply-chain-guard
Version v5.25.4
PURL pkg:github/homeofe/[email protected]

Origin

Source forager
Feed github.com
Ecosystem github
Domain github.com
URL https://github.com/homeofe/supply-chain-guard/archive/refs/tags/v5.25.4.tar.gz

Timeline

First seen 5 Aug 2026 13:05 UTC
First analyzed 17 Aug 2026 23:34 UTC
Last analyzed 17 Aug 2026 23:34 UTC
Last updated 17 Aug 2026 23:34 UTC

Labeling

Label unknown
Label source forager
Traits version 18b13