This analysis was performed using vet and SafeDep Cloud Malicious Package Analysis. Integrate with GitHub using vet-action GitHub Action.
The package contains a pre-compiled binary, a valid use case. The extension mismatch is likely due to versioning. Not classified as malware.
The package contains a shared object file (libvips-cpp.so.8.17.2) which is a pre-compiled binary, a valid use case for embedding executables. The extension mismatch is likely due to versioning. Without further evidence of malicious behavior, it's not classified as malware.