npm
Malicious@navify-platform/idle@2.3.0
Vulnerability report · Last retrieved from osv.dev October 8, 2026 at 6:45 PM UTC
OSV ID
MAL-2025-41251
Ecosystem
npm
Summary
The OpenSSF Package Analysis project identified '@navify-platform/idle' @ 2.3.0 (npm) as malicious. It is considered malicious because: - The package communicates with a domain associated with malicious activity.
Source: ossf-package-analysis (d4c05f7983c6a597941a36c8177f63342feee29acb5d3922471e2fa25da4f159)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.