Analyze your own packages withvet GitHub

@esbuild/win32-arm64@0.25.11

Safe
Analyzed at:10/15/2025, 2:12:11 AM
Source:https://registry.npmjs.org/@esbuild/win32-arm64/-/win32-arm64-0.25.11.tgz
SHA256:1ffc16f6bdf18137dbec2b873caf6e9bcc90c2a815b3a537db2abe4e33267bc9
Confidence:Medium
Summary

This analysis was performed using vet and SafeDep Cloud Malicious Package Analysis. Integrate with GitHub using vet-action GitHub Action.

Embedded executable esbuild.exe found, but insufficient evidence to classify as malware. Legitimate use cases for embedded binaries exist.

Details

The package @esbuild/win32-arm64 contains an embedded executable esbuild.exe. While this raises a flag for potential security risks, it's not sufficient to classify it as malware. There are valid use cases for embedding executables, such as pre-compiled binaries. Without further evidence of malicious behavior or intent, it's safer to assume it's a legitimate use case.