critical

Malware in npm package "archetype-style"

malicious-version-published · active

The npm package "archetype-style" has been identified as malicious. Any system with this package installed should be considered fully compromised, and all secrets and keys stored on that system should be rotated immediately from a separate, clean computer.

Affected packages

Sources