Summary
Togoder Security scanned the npm package recharts@3.10.1 on Oct 6, 2026. An AI review of 552 source files produced no findings. No malicious behavior, install-time payloads, credential theft or exfiltration were identified.
Findings
No findings. The reviewer saw nothing malicious or risky in this version.
Files reviewed
| File | Verdict | What the reviewer saw |
|---|---|---|
| es6/animation/AnimatedItems.js | safe | No malicious patterns detected; the file contains standard React animation helper utilities and Babel transpilation helpers with no network, filesystem, process, or credential access. |
| es6/animation/AnimationController.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/animation/AnimationControllerImpl.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/animation/AnimationHandle.js | safe | No malicious patterns detected; the file contains a legitimate animation state machine implementation for the Recharts library with no network, filesystem, process spawning, or dynamic code execution concerns. |
| es6/animation/CSSTransitionAnimate.js | safe | No malicious patterns detected; the code is a standard React animation utility with no data exfiltration, dynamic execution, or process spawning. |
| es6/animation/JavascriptAnimate.js | safe | No malicious patterns detected; the file contains standard React animation utilities and Babel helper functions with no external network, filesystem, process, or credential access. |
| es6/animation/easing.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/animation/matchBy.js | safe | No malicious patterns detected; the file contains only Babel helper functions and standard animation-matching utilities with no network, filesystem, process, or dynamic-code execution. |
| es6/animation/timeoutController.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/animation/useAnimationController.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/animation/useAnimationStartSnapshot.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/animation/util.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/cartesian/Area.js | safe | No malicious patterns detected in this Recharts Area chart component; the code is a standard React/SVG data visualization implementation with no exfiltration, credential harvesting, eval, network, or process-spawning behavior. |
| es6/cartesian/AreaRevealShape.js | safe | No malicious patterns detected; the file contains only legitimate React component logic for rendering SVG area reveal animations with no network, filesystem, process, or dynamic execution activity. |
| es6/cartesian/Bar.js | safe | No malicious patterns detected; this is a standard Recharts Bar chart component with only React rendering, state management, and animation logic. |
| es6/cartesian/BarStack.js | safe | This is a legitimate React component from the Recharts library that renders SVG clip paths for bar stack rounded corners without any malicious patterns. |
| es6/cartesian/Brush.js | safe | No malicious patterns detected; this is a standard Recharts Brush component with legitimate React and D3 charting logic. |
| es6/cartesian/CartesianAxis.js | safe | No malicious patterns detected; this is a legitimate Recharts CartesianAxis React component that renders SVG axis elements and manages tick state without any network, filesystem, process, or dynamic code execution behavior. |
| es6/cartesian/CartesianGrid.js | safe | No malicious patterns detected; the code is a standard Recharts CartesianGrid component with routine React rendering and utility logic. |
| es6/cartesian/ErrorBar.js | safe | No malicious patterns detected; this is a legitimate Recharts ErrorBar component with standard Babel transpilation helpers and no signs of data exfiltration, code execution, or other security threats. |
| es6/cartesian/Funnel.js | safe | No malicious patterns detected; this is a standard Recharts Funnel chart component with no network, filesystem, process, or dynamic execution concerns. |
| es6/cartesian/GraphicalItemClipPath.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/cartesian/Line.js | safe | No malicious patterns detected; the file is a legitimate Recharts Line chart component with no data exfiltration, credential access, dynamic code execution, or other security concerns. |
| es6/cartesian/LineDrawShape.js | safe | This is a legitimate Recharts line drawing animation component with no malicious patterns, network calls, filesystem access, or dynamic code execution. |
| es6/cartesian/ReferenceArea.js | safe | No malicious patterns detected; this is a standard Recharts React component for rendering reference areas on cartesian charts. |
Show 527 more files
| File | Verdict | What the reviewer saw |
|---|---|---|
| es6/cartesian/ReferenceDot.js | safe | No malicious patterns detected; the code is a standard React charting component (recharts ReferenceDot) with only legitimate imports and UI rendering logic. |
| es6/cartesian/ReferenceLine.js | safe | This is a legitimate Recharts ReferenceLine React component with no malicious patterns detected. |
| es6/cartesian/Scatter.js | safe | No malicious patterns detected; this is a standard Recharts Scatter chart component with only legitimate React rendering, state management, and animation logic. |
| es6/cartesian/XAxis.js | safe | No malicious patterns detected; this is a standard Recharts XAxis React component with no network, filesystem, process, or dynamic execution behavior. |
| es6/cartesian/YAxis.js | safe | No malicious patterns detected; the code is a standard React/Redux Y-axis component from the Recharts library with no data exfiltration, credential harvesting, obfuscation, or dynamic code execution. |
| es6/cartesian/ZAxis.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/cartesian/cartesianPositionToCSSTranslate.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/cartesian/cartesianViewBoxToTrapezoid.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/cartesian/getCartesianPosition.js | safe | No malicious patterns detected |
| es6/cartesian/getEquidistantTicks.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/cartesian/getTicks.js | safe | No malicious patterns detected; this is a standard Recharts tick calculation utility with no network, filesystem, eval, or process execution activity. |
| es6/cartesian/useAnimatedLineLength.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/chart/AreaChart.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/chart/BarChart.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/chart/CartesianChart.js | safe | No malicious patterns detected |
| es6/chart/CategoricalChart.js | safe | No malicious patterns detected; the code is a standard React chart component with no network, filesystem, execution, or credential-harvesting behavior. |
| es6/chart/ComposedChart.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/chart/FunnelChart.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/chart/LineChart.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/chart/PieChart.js | safe | No malicious patterns detected; the code is a standard React chart component with no exfiltration, credential harvesting, obfuscation, or other security concerns. |
| es6/chart/PolarChart.js | safe | No malicious patterns detected; the file contains standard Recharts PolarChart React component code with Babel helper functions and no exfiltration, obfuscation, or dynamic execution. |
| es6/chart/RadarChart.js | safe | No malicious patterns detected |
| es6/chart/RadialBarChart.js | safe | No malicious patterns detected; the file is a standard React chart component with only benign utility and rendering code. |
| es6/chart/RechartsWrapper.js | safe | This is a standard Recharts React wrapper component with only legitimate DOM measurement, event dispatching, and rendering logic; no malicious patterns were detected. |
| es6/chart/Sankey.js | safe | No malicious patterns detected; the file is a standard Recharts Sankey chart implementation with no exfiltration, credential harvesting, obfuscation, or dynamic code execution. |
| es6/chart/ScatterChart.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/chart/SunburstChart.js | safe | No malicious patterns detected; this is a standard Recharts Sunburst chart component with no data exfiltration, credential harvesting, dynamic code execution, or suspicious network/file/process operations. |
| es6/chart/Treemap.js | safe | This is a standard Recharts Treemap chart component with no malicious patterns, no network activity, no process spawning, and no obfuscated code. |
| es6/chart/types.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/component/ActivePoints.js | safe | Code is a standard React component for rendering active dots on charts with no malicious patterns detected. |
| es6/component/Cell.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/component/Cursor.js | safe | No malicious patterns detected |
| es6/component/Customized.js | safe | This is a legitimate deprecated React wrapper component from Recharts with no malicious patterns; it only uses React APIs to render user-provided components and logs a warning for invalid props. |
| es6/component/DefaultLegendContent.js | safe | No malicious patterns detected; this is standard React legend rendering code with no network, filesystem, process, or dynamic execution behavior. |
| es6/component/DefaultTooltipContent.js | safe | No malicious patterns detected; this is a standard Recharts tooltip content component with only Babel helper functions and safe UI rendering logic. |
| es6/component/Dots.js | safe | No malicious patterns detected; the code is a standard React component for rendering dots with Babel transpilation helpers. |
| es6/component/Label.js | safe | This is a standard Recharts React label component with no malicious patterns, network calls, dynamic code execution, or credential harvesting. |
| es6/component/LabelList.js | safe | No malicious patterns detected; the file contains standard React component logic for rendering chart labels with no network, filesystem, process, or dynamic code execution activity. |
| es6/component/Legend.js | safe | No malicious patterns detected |
| es6/component/ResponsiveContainer.js | safe | No malicious patterns detected; the code is a standard React responsive container component with no data exfiltration, obfuscation, or suspicious behavior. |
| es6/component/Text.js | safe | No malicious patterns detected; the file implements a React SVG text component with expected imports and rendering logic only. |
| es6/component/Tooltip.js | safe | No malicious patterns detected |
| es6/component/TooltipBoundingBox.js | safe | No malicious patterns detected; the file contains standard React component logic with Babel helper functions for object spread and iteration. |
| es6/component/responsiveContainerUtils.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/container/ClipPathProvider.js | safe | No malicious patterns detected in this React utility component for generating SVG clip path IDs. |
| es6/container/Layer.js | safe | This is a standard React component wrapper for SVG group elements from the recharts library; no malicious patterns, network requests, credential access, or dynamic code execution were detected. |
| es6/container/RootSurface.js | safe | This is a standard React component for rendering chart surfaces with no malicious patterns, network calls, filesystem access, or dynamic code execution. |
| es6/container/Surface.js | safe | No malicious patterns detected |
| es6/context/ErrorBarContext.js | safe | No malicious patterns detected; the code is a standard React context utility for managing error bar state. |
| es6/context/PanoramaContext.js | safe | No malicious patterns detected |
| es6/context/RegisterGraphicalItemId.js | safe | No malicious patterns detected; the code is a benign React context provider for managing graphical item IDs. |
| es6/context/accessibilityContext.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/context/brushUpdateContext.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/context/chartDataContext.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/context/chartLayoutContext.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/context/legendPayloadContext.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/context/legendPortalContext.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/context/tooltipContext.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/context/tooltipPortalContext.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/context/useTooltipAxis.js | safe | No malicious patterns detected; the code is a legitimate UI utility for tooltip axis handling with no security concerns. |
| es6/hooks.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/index.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/polar/Pie.js | safe | No malicious patterns detected; this is a legitimate React component from the Recharts library implementing a Pie chart visualization. |
| es6/polar/PolarAngleAxis.js | safe | This is a standard Recharts React component for rendering polar angle axis with no malicious patterns, network calls, credential harvesting, dynamic code execution, or suspicious behavior. |
| es6/polar/PolarGrid.js | safe | No malicious patterns detected; the file contains benign React/SVG rendering logic for Recharts' PolarGrid component with no network, filesystem, process, or dynamic code execution concerns. |
| es6/polar/PolarRadiusAxis.js | safe | No malicious patterns detected; this is a legitimate Recharts React component for rendering polar radius axes with no network, filesystem, process, or dynamic execution capabilities. |
| es6/polar/Radar.js | safe | No malicious patterns detected; the file is a standard Recharts radar chart component with only benign imports and UI logic. |
| es6/polar/RadialBar.js | safe | No malicious patterns detected; the code is a standard Recharts RadialBar component with normal React rendering and utility functions. |
| es6/polar/defaultPolarAngleAxisProps.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/polar/defaultPolarRadiusAxisProps.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/shape/Cross.js | safe | No malicious patterns detected |
| es6/shape/Curve.js | safe | No malicious patterns detected; this is a legitimate React charting utility file that renders SVG curves. |
| es6/shape/Dot.js | safe | No malicious patterns detected |
| es6/shape/Polygon.js | safe | This is a legitimate React SVG polygon rendering component from the recharts library with no malicious patterns, network calls, filesystem access, or dynamic code execution. |
| es6/shape/Rectangle.js | safe | This is a standard Recharts Rectangle SVG component with rounded corner and animation logic; no malicious patterns, network activity, credential access, or dynamic code execution were detected. |
| es6/shape/Sector.js | safe | No malicious patterns detected; the file is a legitimate React SVG sector geometry component with no network, filesystem, process, or dynamic code execution behavior. |
| es6/shape/Symbols.js | safe | No malicious patterns detected; the code is a standard Recharts symbol-rendering component with only local computation and no external I/O, process spawning, or dynamic execution. |
| es6/shape/Trapezoid.js | safe | No malicious patterns detected; the code is a standard React SVG shape component with no network, filesystem, process, or dynamic execution behavior. |
| es6/state/RechartsReduxContext.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/RechartsStoreProvider.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/ReportChartProps.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/ReportEventSettings.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/ReportMainChartProps.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/ReportPolarOptions.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/SetGraphicalItem.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/SetLegendPayload.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/SetTooltipEntrySettings.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/brushSlice.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/cartesianAxisSlice.js | safe | This is a standard Redux Toolkit slice from Recharts for managing cartesian axis state; no malicious patterns or security concerns were detected. |
| es6/state/chartDataSlice.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/errorBarSlice.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/eventSettingsSlice.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/externalEventsMiddleware.js | safe | No malicious patterns detected; the code is a legitimate Redux middleware for handling external DOM events with throttling and animation frame scheduling. |
| es6/state/graphicalItemsSlice.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/hooks.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/keyboardEventsMiddleware.js | safe | No malicious patterns detected; the code is a standard Redux Toolkit listener middleware handling keyboard accessibility events for charts. |
| es6/state/layoutSlice.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/legendSlice.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/mouseEventsMiddleware.js | safe | No malicious patterns detected; the file contains standard Redux Toolkit listener middleware for handling mouse events in a charting library. |
| es6/state/optionsSlice.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/polarAxisSlice.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/polarOptionsSlice.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/reduxDevtoolsJsonStringifyReplacer.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/referenceElementsSlice.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/renderedTicksSlice.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/rootPropsSlice.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/areaSelectors.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/arrayEqualityCheck.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/axisSelectors.js | safe | This is a standard Recharts axis selectors module with no malicious patterns, network calls, credential harvesting, code execution, or process spawning. |
| es6/state/selectors/barSelectors.js | safe | No malicious patterns detected; this is a standard Redux/Reselect selector module for chart bar positioning with no network, filesystem, process, or dynamic code execution activity. |
| es6/state/selectors/barStackSelectors.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/brushSelectors.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/combiners/combineActiveLabel.js | safe | The code is a pure utility function for combining active labels and contains no network, filesystem, process, obfuscation, or other malicious patterns. |
| es6/state/selectors/combiners/combineActiveTooltipIndex.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/combiners/combineAllBarPositions.js | safe | No malicious patterns detected; the code is a pure computation utility for bar chart positioning with no network, filesystem, process, or dynamic execution activity. |
| es6/state/selectors/combiners/combineAxisRangeWithReverse.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/combiners/combineBarPosition.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/combiners/combineBarSizeList.js | safe | No malicious patterns detected; the code is a legitimate utility for combining bar size lists in a charting library and contains no network, filesystem, process, or obfuscated execution behavior. |
| es6/state/selectors/combiners/combineCheckedDomain.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/combiners/combineConfiguredScale.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/combiners/combineCoordinateForDefaultIndex.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/combiners/combineDisplayedStackedData.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/combiners/combineInverseScaleFunction.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/combiners/combineRealScaleType.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/combiners/combineStackedData.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/combiners/combineTooltipInteractionState.js | safe | No malicious patterns detected; the code is a benign Redux selector helper for combining tooltip interaction state. |
| es6/state/selectors/combiners/combineTooltipPayload.js | safe | No malicious patterns detected; the code is a standard Redux selector helper for combining tooltip payload data with no network, filesystem, process, or dynamic execution activity. |
| es6/state/selectors/combiners/combineTooltipPayloadConfigurations.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/containerSelectors.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/dataSelectors.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/funnelSelectors.js | safe | No malicious patterns detected |
| es6/state/selectors/graphicalItemSelectors.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/legendSelectors.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/lineSelectors.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/numberDomainEqualityCheck.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/pickAxisId.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/pickAxisType.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/pieSelectors.js | safe | No malicious patterns detected; the code is a standard reselect-based selector module from a charting library with no network, filesystem, process, or dynamic code execution behavior. |
| es6/state/selectors/polarAxisSelectors.js | safe | No malicious patterns detected; the file contains standard Redux selector utilities for polar chart axes with no exfiltration, dynamic execution, or suspicious behavior. |
| es6/state/selectors/polarGridSelectors.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/polarScaleSelectors.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/polarSelectors.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/radarSelectors.js | safe | No malicious patterns detected; the code contains standard reselect selector logic and Babel transpilation helpers for a charting library. |
| es6/state/selectors/radialBarSelectors.js | safe | No malicious patterns detected; the file contains standard reselect selector logic and Babel transpilation helpers for a charting library. |
| es6/state/selectors/rootPropsSelectors.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/scatterSelectors.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/selectActivePropsFromChartPointer.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/selectAllAxes.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/selectChartOffset.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/selectChartOffsetInternal.js | safe | No malicious patterns detected; this is a benign Redux/Reselect selector module from a charting library that performs pure state calculations without network, filesystem, or process operations. |
| es6/state/selectors/selectLegendArea.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/selectPlotArea.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/selectTooltipAxisId.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/selectTooltipAxisType.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/selectTooltipEventType.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/selectTooltipPayloadSearcher.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/selectTooltipSettings.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/selectTooltipState.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/selectors.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/tooltipSelectors.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/selectors/touchSelectors.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/store.js | safe | No malicious patterns detected |
| es6/state/tooltipSlice.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/touchEventsMiddleware.js | safe | No malicious patterns detected |
| es6/state/types/AreaSettings.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/types/BarSettings.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/types/LineSettings.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/types/PieSettings.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/types/RadarSettings.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/types/RadialBarSettings.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/types/ScatterSettings.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/types/StackedGraphicalItem.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/state/zIndexSlice.js | safe | No malicious patterns detected; the code is a standard Redux Toolkit slice managing z-index state with no network, filesystem, process, or dynamic execution behavior. |
| es6/synchronisation/syncSelectors.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/synchronisation/types.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/synchronisation/useChartSynchronisation.js | safe | This is Recharts' chart synchronization hook module using standard React patterns, Redux state management, and an internal event emitter; no malicious patterns, external network calls, credential access, code execution, or obfuscation were detected. |
| es6/theme/RechartsTheme.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/theme/RechartsThemeContext.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/theme/darkTheme.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/theme/graphicalItemIdentity.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/theme/legacyTheme.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/theme/lightTheme.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/types.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/util/ActiveShapeUtils.js | safe | No malicious patterns detected; the code is a standard React utility for rendering configurable shape components with no network, filesystem, process, or dynamic code execution concerns. |
| es6/util/BarUtils.js | safe | No malicious patterns detected; the code is a standard React utility for rendering bar shapes with no network, filesystem, process, or dynamic code execution activity. |
| es6/util/CartesianUtils.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/util/ChartUtils.js | safe | No malicious patterns detected; this is a legitimate chart utility module with pure data transformation, tick generation, and stacking logic, with no network, filesystem, process, or dynamic code execution activity. |
| es6/util/Constants.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/util/CssPrefixUtils.js | safe | No malicious patterns detected; the file contains only Babel-generated helper functions for object spreading and a utility to generate vendor-prefixed CSS style objects. |
| es6/util/DOMUtils.js | safe | This is a benign text measurement utility with LRU caching that performs DOM-based text size calculations, with no suspicious network, filesystem, or code execution behavior. |
| es6/util/DataUtils.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/util/Events.js | safe | No malicious patterns detected |
| es6/util/FunnelUtils.js | safe | The code defines a React component and helper functions for shape rendering without any malicious patterns, network requests, environment access, or dynamic execution. |
| es6/util/Global.js | safe | No malicious patterns detected |
| es6/util/IfOverflow.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/util/LRUCache.js | safe | No malicious patterns detected |
| es6/util/LogUtils.js | safe | No malicious patterns detected |
| es6/util/PolarUtils.js | safe | The code contains only standard JavaScript utility functions for geometric and polar coordinate calculations; no malicious patterns such as data exfiltration, credential harvesting, dynamic code execution, network requests, or process spawning were detected. |
| es6/util/RadialBarUtils.js | safe | No malicious patterns detected |
| es6/util/ReactUtils.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/util/ReduceCSSCalc.js | safe | No malicious patterns detected; the code is a benign CSS calc expression evaluator with no data exfiltration, environment harvesting, dynamic code execution, or network/process activity. |
| es6/util/ScatterUtils.js | safe | No malicious patterns detected; the file contains standard React component rendering logic with no network, filesystem, process execution, or obfuscated code. |
| es6/util/TickUtils.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/util/XAxisUtils.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/util/YAxisUtils.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/util/axisPropsAreEqual.js | safe | No malicious patterns detected |
| es6/util/createCartesianCharts.js | safe | No malicious patterns detected; the code is a legitimate React chart wrapper utility with Babel helper functions and no network, filesystem, process, or dynamic code execution activity. |
| es6/util/createEventProxy.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/util/createPolarCharts.js | safe | No malicious patterns detected; the file contains only standard Babel helper functions and React component wrappers for typed chart creation. |
| es6/util/cursor/getCursorPoints.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/util/cursor/getCursorRectangle.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/util/cursor/getRadialCursorPoints.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/util/excludeEventProps.js | safe | No malicious patterns detected |
| es6/util/getActiveCoordinate.js | safe | No malicious patterns detected; the code is a legitimate Recharts utility for computing active tooltip coordinates from tick positions. |
| es6/util/getAxisTypeBasedOnLayout.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/util/getClassNameFromUnknown.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/util/getEveryNth.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/util/getRadiusAndStrokeWidthFromDot.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/util/getRelativeCoordinate.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/util/getSliced.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/util/isDomainSpecifiedByUser.js | safe | No malicious patterns detected; the code is a legitimate Recharts utility for validating and parsing user-provided numerical domain values. |
| es6/util/isWellBehavedNumber.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/util/payload/getUniqPayload.js | safe | No malicious patterns detected |
| es6/util/propsAreEqual.js | safe | The code is a pure prop-comparison utility for React/Redux with no network, filesystem, process, or dynamic execution activity. |
| es6/util/resolveDefaultProps.js | safe | No malicious patterns detected |
| es6/util/round.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/util/scale/CartesianScaleHelper.js | safe | No malicious patterns detected |
| es6/util/scale/CustomScaleDefinition.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/util/scale/RechartsScale.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/util/scale/createCategoricalInverse.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/util/scale/getNiceTickValues.js | safe | No malicious patterns detected; the file contains only mathematical tick-calculation utilities with standard Babel helper functions and no network, filesystem, process, or credential access. |
| es6/util/scale/index.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/util/scale/util/arithmetic.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/util/stacks/getStackSeriesIdentifier.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/util/stacks/stackTypes.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/util/svgPropertiesAndEvents.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/util/svgPropertiesNoEvents.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/util/tooltip/translate.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/util/typedDataKey.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/util/types.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/util/useAnimationId.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/util/useElementOffset.js | safe | No malicious patterns detected |
| es6/util/useId.js | safe | No malicious patterns detected; the file contains only standard utility functions for React ID generation and array destructuring polyfills. |
| es6/util/usePrefersReducedMotion.js | safe | No malicious patterns detected; the file contains a standard React hook for detecting the prefers-reduced-motion media query plus Babel helper functions. |
| es6/util/useReportScale.js | safe | No malicious patterns detected; the code is a standard React hook with Babel helper functions for array destructuring. |
| es6/util/useUniqueId.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/zIndex/DefaultZIndexes.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/zIndex/ZIndexLayer.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/zIndex/ZIndexPortal.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/zIndex/getZIndexFromUnknown.js | safe | Cleared by Jev triage; no further analysis needed |
| es6/zIndex/zIndexSelectors.js | safe | Cleared by Jev triage; no further analysis needed |
| lib/animation/AnimatedItems.js | safe | No malicious patterns detected |
| lib/animation/AnimationController.js | safe | Cleared by Jev triage; no further analysis needed |
| lib/animation/AnimationControllerImpl.js | safe | No malicious patterns detected; the code is a benign animation controller implementation. |
| lib/animation/AnimationHandle.js | safe | No malicious patterns detected |
| lib/animation/CSSTransitionAnimate.js | safe | The file contains only standard React animation logic with no malicious patterns such as data exfiltration, credential harvesting, dynamic code execution, or network activity. |
| lib/animation/JavascriptAnimate.js | safe | No malicious patterns detected |
| lib/animation/easing.js | safe | No malicious patterns detected; the file is a pure easing/bezier math utility with no network, filesystem, process, or dynamic code execution activity. |
| lib/animation/matchBy.js | safe | No malicious patterns detected; the file contains only chart animation item matching logic with no network, filesystem, credential, or dynamic execution behavior. |
| lib/animation/timeoutController.js | safe | No malicious patterns detected |
| lib/animation/useAnimationController.js | safe | No malicious patterns detected; this is a standard React context provider and hook for animation controller injection in the Recharts library. |
| lib/animation/useAnimationStartSnapshot.js | safe | No malicious patterns detected |
| lib/animation/util.js | safe | No malicious patterns detected |
| lib/cartesian/Area.js | safe | This is a standard Recharts React component for rendering area charts with no malicious patterns, network calls, credential access, or dynamic code execution. |
| lib/cartesian/AreaRevealShape.js | safe | No malicious patterns detected; the file is a legitimate React component for rendering animated area chart shapes in the recharts library. |
| lib/cartesian/Bar.js | safe | This is a standard Recharts React component file for rendering bar charts with no malicious patterns, network calls, credential harvesting, dynamic code execution, or process spawning. |
| lib/cartesian/BarStack.js | safe | No malicious patterns detected |
| lib/cartesian/Brush.js | safe | No malicious patterns detected; the file is a legitimate Recharts Brush component implementation with standard React, d3-scale, and utility imports, and contains no exfiltration, credential harvesting, obfuscation, process spawning, or dynamic code execution. |
| lib/cartesian/CartesianAxis.js | safe | The code is a standard Recharts CartesianAxis React component with no malicious patterns, network calls, dynamic code execution, or credential access. |
| lib/cartesian/CartesianGrid.js | safe | No malicious patterns detected; the file is a standard Recharts CartesianGrid React component with no network, filesystem, process, or dynamic code execution activity. |
| lib/cartesian/ErrorBar.js | safe | No malicious patterns detected; this is a standard Recharts ErrorBar React component with no network, filesystem, process, or dynamic code execution behavior. |
| lib/cartesian/Funnel.js | safe | No malicious patterns detected; the file contains standard React/Recharts chart rendering logic with no network, filesystem, process, or dynamic execution concerns. |
| lib/cartesian/GraphicalItemClipPath.js | safe | No malicious patterns detected in this React component for SVG clip path rendering. |
| lib/cartesian/Line.js | safe | The file is a standard Recharts Line chart component with no malicious patterns, network calls, or dynamic code execution. |
| lib/cartesian/LineDrawShape.js | safe | This is a legitimate Recharts line-drawing SVG shape component with no network, filesystem, process, credential, obfuscation, or dynamic code execution patterns. |
| lib/cartesian/ReferenceArea.js | safe | No malicious patterns detected in the ReferenceArea component; it is a standard Recharts visualization component with no network, filesystem, process, or dynamic code execution behavior. |
| lib/cartesian/ReferenceDot.js | safe | No malicious patterns detected; the file contains standard Recharts React component logic for rendering reference dots. |
| lib/cartesian/ReferenceLine.js | safe | This is a legitimate Recharts React component for rendering reference lines in charts, with no malicious patterns detected. |
| lib/cartesian/Scatter.js | safe | No malicious patterns detected; this is a legitimate Recharts Scatter chart component with standard React rendering, data processing, and animation logic. |
| lib/cartesian/XAxis.js | safe | This is a standard Recharts XAxis React component with no malicious patterns such as data exfiltration, credential harvesting, code execution, or network activity. |
| lib/cartesian/YAxis.js | safe | No malicious patterns detected; this is a standard Recharts YAxis React component with no network, filesystem, or dynamic code execution behavior. |
| lib/cartesian/ZAxis.js | safe | No malicious patterns detected |
| lib/cartesian/cartesianPositionToCSSTranslate.js | safe | No malicious patterns detected; the code is a pure utility function converting position values into a CSS translate string with no external interactions, dynamic execution, or I/O. |
| lib/cartesian/cartesianViewBoxToTrapezoid.js | safe | No malicious patterns detected |
| lib/cartesian/getCartesianPosition.js | safe | No malicious patterns detected; the code is a benign cartesian position calculator with no network, file system, process execution, or obfuscated behavior. |
| lib/cartesian/getEquidistantTicks.js | safe | No malicious patterns detected; the code is a pure tick-calculation utility with no network, filesystem, process, or dynamic execution activity. |
| lib/cartesian/getTicks.js | safe | No malicious patterns detected; the code is a legitimate chart tick calculation utility from the Recharts library. |
| lib/cartesian/useAnimatedLineLength.js | safe | No malicious patterns detected; the code is a legitimate React hook for animating SVG line length without any network, filesystem, process, or dynamic execution behavior. |
| lib/chart/AreaChart.js | safe | No malicious patterns detected |
| lib/chart/BarChart.js | safe | No malicious patterns detected |
| lib/chart/CartesianChart.js | safe | No malicious patterns detected |
| lib/chart/CategoricalChart.js | safe | No malicious patterns detected; the file is a standard React component wrapper with no network, filesystem, process, or dynamic execution activity. |
| lib/chart/ComposedChart.js | safe | No malicious patterns detected |
| lib/chart/FunnelChart.js | safe | No malicious patterns detected |
| lib/chart/LineChart.js | safe | No malicious patterns detected; the file is a standard React chart component wrapper with no network, filesystem, or dynamic execution behavior. |
| lib/chart/PieChart.js | safe | No malicious patterns detected; the file is a standard React PieChart component with only benign Babel helper boilerplate and no network, filesystem, process, or dynamic code execution activity. |
| lib/chart/PolarChart.js | safe | No malicious patterns detected |
| lib/chart/RadarChart.js | safe | No malicious patterns detected; the file is a standard React component wrapper for a radar chart with no network, filesystem, process, or dynamic code execution behavior. |
| lib/chart/RadialBarChart.js | safe | This is a standard Recharts React component file with no malicious patterns, network calls, credential access, or dynamic code execution. |
| lib/chart/RechartsWrapper.js | safe | No malicious patterns detected; this is a standard React/Recharts wrapper component with no data exfiltration, eval, process spawning, or credential harvesting. |
| lib/chart/Sankey.js | safe | No malicious patterns detected in this Recharts Sankey chart component; it performs purely in-browser chart layout and rendering with no network, filesystem, process, or dynamic code execution activity. |
| lib/chart/ScatterChart.js | safe | No malicious patterns detected; the file only defines a standard React chart component wrapper with no network, filesystem, process, or dynamic execution behavior. |
| lib/chart/SunburstChart.js | safe | This is a standard React chart component from the recharts library with no malicious patterns, external calls, or suspicious behavior. |
| lib/chart/Treemap.js | safe | No malicious patterns detected; this is a standard Recharts Treemap component implementation with only normal chart rendering logic. |
| lib/chart/types.js | safe | Cleared by Jev triage; no further analysis needed |
| lib/component/ActivePoints.js | safe | No malicious patterns detected; the code is a standard React component for rendering active data points in a charting library. |
| lib/component/Cell.js | safe | No malicious patterns detected |
| lib/component/Cursor.js | safe | No malicious patterns detected |
| lib/component/Customized.js | safe | This is a legitimate Recharts UI component that renders React elements or functions via React.createElement/cloneElement without any network, filesystem, process, or dynamic code execution behavior. |
| lib/component/DefaultLegendContent.js | safe | No malicious patterns detected; the file is a standard React component for rendering legend content with no network, filesystem, process, or dynamic execution activity. |
| lib/component/DefaultTooltipContent.js | safe | This is a standard Recharts tooltip content component with no malicious patterns, external calls, or dynamic execution. |
| lib/component/Dots.js | safe | No malicious patterns detected; the code is a standard React component for rendering dots in a charting library, with no network, filesystem, process, eval, or credential access behaviors. |
| lib/component/Label.js | safe | No malicious patterns detected; this is a standard React label rendering component from the recharts library with no network, filesystem, process, or dynamic code execution activity. |
| lib/component/LabelList.js | safe | The code is a legitimate React component from the Recharts library for rendering chart labels, with no malicious patterns detected. |
| lib/component/Legend.js | safe | This is a standard React component from the Recharts library that renders chart legends; no malicious patterns, network calls, credential harvesting, dynamic code execution, or process spawning were detected. |
| lib/component/ResponsiveContainer.js | safe | No malicious patterns detected; the code is a standard React responsive container component from a charting library. |
| lib/component/Text.js | safe | No malicious patterns detected in this Recharts Text component; it is a standard React rendering utility with no external network, filesystem, credential, or process access. |
| lib/component/Tooltip.js | safe | No malicious patterns detected; the code is a standard React tooltip component from Recharts with no data exfiltration, dynamic execution, or other security concerns. |
| lib/component/TooltipBoundingBox.js | safe | This is a standard React tooltip component with no malicious patterns, external connections, file system access, or process spawning. |
| lib/component/responsiveContainerUtils.js | safe | No malicious patterns detected; the file contains only pure layout/dimension calculation logic with no network, filesystem, process, or dynamic code execution concerns. |
| lib/container/ClipPathProvider.js | safe | No malicious patterns detected; the code is a standard React context provider for generating SVG clip path IDs in the recharts library. |
| lib/container/Layer.js | safe | No malicious patterns detected; the code is a standard React SVG Layer component wrapper with no network, filesystem, process, or dynamic execution behavior. |
| lib/container/RootSurface.js | safe | No malicious patterns detected; this is a standard React component file from the Recharts library with only UI rendering logic and no network, filesystem, process, or dynamic code execution. |
| lib/container/Surface.js | safe | No malicious patterns detected; this is a standard Recharts Surface component rendering an SVG element with typical Babel/React utility helpers. |
| lib/context/ErrorBarContext.js | safe | No malicious patterns detected; the file contains standard React context and Redux dispatch logic for error bar settings. |
| lib/context/PanoramaContext.js | safe | No malicious patterns detected; the file only defines a standard React context provider and hook for panorama detection. |
| lib/context/RegisterGraphicalItemId.js | safe | No malicious patterns detected |
| lib/context/accessibilityContext.js | safe | No malicious patterns detected |
| lib/context/brushUpdateContext.js | safe | No malicious patterns detected |
| lib/context/chartDataContext.js | safe | No malicious patterns detected in the React context provider code; it only manages chart data state via Redux dispatch and hooks. |
| lib/context/chartLayoutContext.js | safe | No malicious patterns detected; this is a legitimate React/Redux chart layout context module with only local state selectors and dispatches. |
| lib/context/legendPayloadContext.js | safe | No malicious patterns detected |
| lib/context/legendPortalContext.js | safe | No malicious patterns detected; the file only creates and exports a React context and a hook. |
| lib/context/tooltipContext.js | safe | No malicious patterns detected |
| lib/context/tooltipPortalContext.js | safe | No malicious patterns detected |
| lib/context/useTooltipAxis.js | safe | No malicious patterns detected; the file contains standard React hook/selector logic with no network, filesystem, process, or dynamic execution activity. |
| lib/hooks.js | safe | No malicious patterns detected; this is a legitimate Recharts React hooks module with no network, filesystem, process, or dynamic code execution activity. |
| lib/index.js | safe | No malicious patterns detected |
| lib/polar/Pie.js | safe | This is a standard Recharts Pie chart component with no malicious patterns; it performs only local rendering, state management, and geometry calculations. |
| lib/polar/PolarAngleAxis.js | safe | No malicious patterns detected; this is a legitimate React component file from the Recharts library for rendering polar angle axes. |
| lib/polar/PolarGrid.js | safe | The code is a standard React component for rendering polar grid lines in a charting library, with no network, filesystem, process, eval, or other malicious patterns. |
| lib/polar/PolarRadiusAxis.js | safe | No malicious patterns detected |
| lib/polar/Radar.js | safe | No malicious patterns detected in this Recharts radar chart component source file. |
| lib/polar/RadialBar.js | safe | No malicious patterns detected; this is a standard React charting component with no network, filesystem, process, or dynamic code execution concerns. |
| lib/polar/defaultPolarAngleAxisProps.js | safe | This file only defines a static configuration object for a polar angle axis with no executable, network, filesystem, or obfuscated behavior. |
| lib/polar/defaultPolarRadiusAxisProps.js | safe | No malicious patterns detected |
| lib/shape/Cross.js | safe | No malicious patterns detected |
| lib/shape/Curve.js | safe | No malicious patterns detected; the code is a standard React charting utility that renders SVG paths using d3-shape without any network, filesystem, process, or dynamic code execution activity. |
| lib/shape/Dot.js | safe | No malicious patterns detected; the code is a standard React SVG dot rendering component from the recharts library with no network, filesystem, process, or dynamic execution behavior. |
| lib/shape/Polygon.js | safe | No malicious patterns detected; this is a standard React component for rendering SVG polygons with no network, filesystem, process, or dynamic code execution behavior. |
| lib/shape/Rectangle.js | safe | No malicious patterns detected |
| lib/shape/Sector.js | safe | No malicious patterns detected; the code is a legitimate React SVG Sector component from the recharts library with no exfiltration, credential harvesting, obfuscation, or dynamic execution. |
| lib/shape/Symbols.js | safe | No malicious patterns detected; the file is a legitimate React component for rendering SVG symbols without any network, filesystem, or code-execution risks. |
| lib/shape/Trapezoid.js | safe | No malicious patterns detected; the file is a standard React SVG Trapezoid component from the recharts library with no network, filesystem, process, or dynamic execution activity. |
| lib/state/RechartsReduxContext.js | safe | No malicious patterns detected |
| lib/state/RechartsStoreProvider.js | safe | No malicious patterns detected; the file is a legitimate Recharts Redux store provider component with no network, filesystem, process, or dynamic code execution behavior. |
| lib/state/ReportChartProps.js | safe | No malicious patterns detected |
| lib/state/ReportEventSettings.js | safe | No malicious patterns detected; the file only defines a React component that dispatches state updates to an internal Redux slice. |
| lib/state/ReportMainChartProps.js | safe | No malicious patterns detected |
| lib/state/ReportPolarOptions.js | safe | No malicious patterns detected |
| lib/state/SetGraphicalItem.js | safe | No malicious patterns detected; the code is a standard React component that manages graphical item state via dispatch actions. |
| lib/state/SetLegendPayload.js | safe | No malicious patterns detected; the code is a standard React component for managing legend payload state in a charting library. |
| lib/state/SetTooltipEntrySettings.js | safe | No malicious patterns detected; the file is a standard React hook for managing tooltip state within a Redux-like store. |
| lib/state/brushSlice.js | safe | No malicious patterns detected |
| lib/state/cartesianAxisSlice.js | safe | No malicious patterns detected; this is a standard Redux Toolkit slice for managing cartesian axis state in Recharts. |
| lib/state/chartDataSlice.js | safe | This is a standard Redux Toolkit slice for managing chart data state with no malicious patterns detected. |
| lib/state/errorBarSlice.js | safe | No malicious patterns detected; the code is a standard Redux Toolkit slice for managing error bar state. |
| lib/state/eventSettingsSlice.js | safe | No malicious patterns detected |
| lib/state/externalEventsMiddleware.js | safe | No malicious patterns detected; the code is a legitimate Redux middleware for throttling DOM events with no exfiltration, dynamic code execution, or suspicious network/file system access. |
| lib/state/graphicalItemsSlice.js | safe | No malicious patterns detected |
| lib/state/hooks.js | safe | No malicious patterns detected; the code is a standard React Redux hook implementation for the recharts library with no network, filesystem, process, or obfuscated code concerns. |
| lib/state/keyboardEventsMiddleware.js | safe | No malicious patterns detected; the file contains legitimate Redux Toolkit middleware for keyboard accessibility handling in a charting library. |
| lib/state/layoutSlice.js | safe | No malicious patterns detected |
| lib/state/legendSlice.js | safe | No malicious patterns detected |
| lib/state/mouseEventsMiddleware.js | safe | No malicious patterns detected; the code is a standard Redux Toolkit middleware for handling mouse events in a charting library. |
| lib/state/optionsSlice.js | safe | No malicious patterns detected |
| lib/state/polarAxisSlice.js | safe | No malicious patterns detected; the file is a standard Redux Toolkit slice for polar axis state management. |
| lib/state/polarOptionsSlice.js | safe | No malicious patterns detected; the file is a straightforward Redux Toolkit slice definition for managing polar chart options. |
| lib/state/reduxDevtoolsJsonStringifyReplacer.js | safe | No malicious patterns detected |
| lib/state/referenceElementsSlice.js | safe | No malicious patterns detected; the code is a standard Redux Toolkit slice for managing reference elements. |
| lib/state/renderedTicksSlice.js | safe | No malicious patterns detected |
| lib/state/rootPropsSlice.js | safe | This is a standard Redux Toolkit slice for managing chart options with no malicious patterns, network requests, or suspicious code. |
| lib/state/selectors/areaSelectors.js | safe | No malicious patterns detected; the file contains standard Redux/Reselect selectors for chart rendering without network, filesystem, process, or dynamic code execution behavior. |
| lib/state/selectors/arrayEqualityCheck.js | safe | No malicious patterns detected |
| lib/state/selectors/axisSelectors.js | safe | No malicious patterns detected; the file contains standard Recharts axis selector logic with no network, filesystem, process, or dynamic execution activity. |
| lib/state/selectors/barSelectors.js | safe | No malicious patterns detected; the file contains only standard Redux selector logic for chart bar positioning. |
| lib/state/selectors/barStackSelectors.js | safe | No malicious patterns detected |
| lib/state/selectors/brushSelectors.js | safe | No malicious patterns detected |
| lib/state/selectors/combiners/combineActiveLabel.js | safe | The file contains a simple utility function that maps an active index to a tooltip tick value, with no network, filesystem, process, or dynamic code execution activity. |
| lib/state/selectors/combiners/combineActiveTooltipIndex.js | safe | No malicious patterns detected; the code performs safe numeric clamping and domain validation for tooltip index selection. |
| lib/state/selectors/combiners/combineAllBarPositions.js | safe | No malicious patterns detected; the file contains only pure geometry calculation logic for bar positions with no network, filesystem, process, or dynamic execution behavior. |
| lib/state/selectors/combiners/combineAxisRangeWithReverse.js | safe | No malicious patterns detected |
| lib/state/selectors/combiners/combineBarPosition.js | safe | No malicious patterns detected |
| lib/state/selectors/combiners/combineBarSizeList.js | safe | No malicious patterns detected; the file contains only pure helper functions for bar sizing with no network, filesystem, process, or dynamic execution activity. |
| lib/state/selectors/combiners/combineCheckedDomain.js | safe | No malicious patterns detected |
| lib/state/selectors/combiners/combineConfiguredScale.js | safe | This file contains standard d3-scale utility functions for configuring chart scales with no malicious patterns detected. |
| lib/state/selectors/combiners/combineCoordinateForDefaultIndex.js | safe | No malicious patterns detected |
| lib/state/selectors/combiners/combineDisplayedStackedData.js | safe | No malicious patterns detected; the code is a pure data-transformation utility for stacked chart data with no network, filesystem, process, or dynamic execution behavior. |
| lib/state/selectors/combiners/combineInverseScaleFunction.js | safe | No malicious patterns detected in the provided code snippet. |
| lib/state/selectors/combiners/combineRealScaleType.js | safe | No malicious patterns detected |
| lib/state/selectors/combiners/combineStackedData.js | safe | No malicious patterns detected; the code is a pure data selector function with no network, filesystem, process, or dynamic execution behavior. |
| lib/state/selectors/combiners/combineTooltipInteractionState.js | safe | No malicious patterns detected |
| lib/state/selectors/combiners/combineTooltipPayload.js | safe | No malicious patterns detected; the code is a standard React/Recharts tooltip payload combiner with only pure data transformation logic. |
| lib/state/selectors/combiners/combineTooltipPayloadConfigurations.js | safe | No malicious patterns detected; the file contains only pure tooltip payload filtering logic with no network, filesystem, process, or dynamic code execution behavior. |
| lib/state/selectors/containerSelectors.js | safe | No malicious patterns detected |
| lib/state/selectors/dataSelectors.js | safe | No malicious patterns detected |
| lib/state/selectors/funnelSelectors.js | safe | No malicious patterns detected |
| lib/state/selectors/graphicalItemSelectors.js | safe | No malicious patterns detected |
| lib/state/selectors/legendSelectors.js | safe | No malicious patterns detected |
| lib/state/selectors/lineSelectors.js | safe | No malicious patterns detected |
| lib/state/selectors/numberDomainEqualityCheck.js | safe | No malicious patterns detected; the file contains a simple equality check function with no network, filesystem, process, or dynamic execution activity. |
| lib/state/selectors/pickAxisId.js | safe | No malicious patterns detected |
| lib/state/selectors/pickAxisType.js | safe | No malicious patterns detected |
| lib/state/selectors/pieSelectors.js | safe | This is a standard Redux selector module for pie chart data with no malicious patterns, network calls, credential access, or dynamic code execution. |
| lib/state/selectors/polarAxisSelectors.js | safe | No malicious patterns detected |
| lib/state/selectors/polarGridSelectors.js | safe | No malicious patterns detected; the code only defines reselect selectors for polar grid angles and radii using internal charting utilities. |
| lib/state/selectors/polarScaleSelectors.js | safe | No malicious patterns detected |
| lib/state/selectors/polarSelectors.js | safe | This is a standard Redux reselect selectors module for polar chart data handling with no malicious patterns detected. |
| lib/state/selectors/radarSelectors.js | safe | No malicious patterns detected; this is a standard Redux reselect selectors module for radar chart axis computations with no network, filesystem, process, or dynamic execution activity. |
| lib/state/selectors/radialBarSelectors.js | safe | No malicious patterns detected; the file contains standard Redux/Reselect selector logic for a charting library with no network, filesystem, process, or dynamic execution behavior. |
| lib/state/selectors/rootPropsSelectors.js | safe | No malicious patterns detected |
| lib/state/selectors/scatterSelectors.js | safe | No malicious patterns detected; the file contains standard Redux selector logic for scatter chart data with no network, filesystem, process, or dynamic execution activity. |
| lib/state/selectors/selectActivePropsFromChartPointer.js | safe | No malicious patterns detected |
| lib/state/selectors/selectAllAxes.js | safe | No malicious patterns detected |
| lib/state/selectors/selectChartOffset.js | safe | No malicious patterns detected; the file only defines a simple reselect selector for chart offset values. |
| lib/state/selectors/selectChartOffsetInternal.js | safe | No malicious patterns detected; the file contains standard Redux/Reselect selector logic for computing chart layout offsets. |
| lib/state/selectors/selectLegendArea.js | safe | No malicious patterns detected; the file is a benign Reselect selector computing legend area dimensions. |
| lib/state/selectors/selectPlotArea.js | safe | No malicious patterns detected |
| lib/state/selectors/selectTooltipAxisId.js | safe | No malicious patterns detected |
| lib/state/selectors/selectTooltipAxisType.js | safe | No malicious patterns detected |
| lib/state/selectors/selectTooltipEventType.js | safe | No malicious patterns detected |
| lib/state/selectors/selectTooltipPayloadSearcher.js | safe | No malicious patterns detected |
| lib/state/selectors/selectTooltipSettings.js | safe | No malicious patterns detected |
| lib/state/selectors/selectTooltipState.js | safe | No malicious patterns detected |
| lib/state/selectors/selectors.js | safe | No malicious patterns detected; the file contains standard Redux/Reselect selector logic for chart tooltips with no network, filesystem, process, or dynamic code execution activity. |
| lib/state/selectors/tooltipSelectors.js | safe | No malicious patterns detected |
| lib/state/selectors/touchSelectors.js | safe | No malicious patterns detected; the code is a standard reselect selector for tooltip coordinates with no network, filesystem, process, or dynamic execution behavior. |
| lib/state/store.js | safe | No malicious patterns detected |
| lib/state/tooltipSlice.js | safe | No malicious patterns detected |
| lib/state/touchEventsMiddleware.js | safe | No malicious patterns detected; the file contains legitimate Redux middleware for handling touch events in a charting library. |
| lib/state/types/AreaSettings.js | safe | Cleared by Jev triage; no further analysis needed |
| lib/state/types/BarSettings.js | safe | Cleared by Jev triage; no further analysis needed |
| lib/state/types/LineSettings.js | safe | Cleared by Jev triage; no further analysis needed |
| lib/state/types/PieSettings.js | safe | Cleared by Jev triage; no further analysis needed |
| lib/state/types/RadarSettings.js | safe | Cleared by Jev triage; no further analysis needed |
| lib/state/types/RadialBarSettings.js | safe | Cleared by Jev triage; no further analysis needed |
| lib/state/types/ScatterSettings.js | safe | Cleared by Jev triage; no further analysis needed |
| lib/state/types/StackedGraphicalItem.js | safe | No malicious patterns detected |
| lib/state/zIndexSlice.js | safe | No malicious patterns detected |
| lib/synchronisation/syncSelectors.js | safe | No malicious patterns detected |
| lib/synchronisation/types.js | safe | Cleared by Jev triage; no further analysis needed |
| lib/synchronisation/useChartSynchronisation.js | safe | This is a legitimate Recharts chart synchronization module that manages tooltip and brush state across charts via an internal event emitter, with no malicious patterns detected. |
| lib/theme/RechartsTheme.js | safe | Cleared by Jev triage; no further analysis needed |
| lib/theme/RechartsThemeContext.js | safe | No malicious patterns detected |
| lib/theme/darkTheme.js | safe | No malicious patterns detected |
| lib/theme/graphicalItemIdentity.js | safe | The code is a pure utility for deterministic hash-based theme index assignment with no network, filesystem, process, or dynamic execution activity. |
| lib/theme/legacyTheme.js | safe | No malicious patterns detected |
| lib/theme/lightTheme.js | safe | No malicious patterns detected |
| lib/types.js | safe | Cleared by Jev triage; no further analysis needed |
| lib/util/ActiveShapeUtils.js | safe | No malicious patterns detected; the code is a benign React shape-rendering utility with no network, filesystem, process, or dynamic-execution behavior. |
| lib/util/BarUtils.js | safe | No malicious patterns detected; the file contains standard React/recharts utility code with no exfiltration, obfuscation, shell, or network activity. |
| lib/util/CartesianUtils.js | safe | No malicious patterns detected; the code only contains pure mathematical geometry functions for rectangle and angle calculations. |
| lib/util/ChartUtils.js | safe | No malicious patterns detected; this is a legitimate charting utility module from Recharts with no network, filesystem, process, or credential access. |
| lib/util/Constants.js | safe | No malicious patterns detected |
| lib/util/CssPrefixUtils.js | safe | The code only generates vendor-prefixed CSS style objects and contains no network, filesystem, process, or dynamic execution behavior. |
| lib/util/DOMUtils.js | safe | No malicious patterns detected; the code is a standard text measurement utility using DOM and an LRU cache, with no network, filesystem, or process activity. |
| lib/util/DataUtils.js | safe | No malicious patterns detected; the file contains only standard utility functions for data checks, percent conversion, interpolation, and linear regression. |
| lib/util/Events.js | safe | No malicious patterns detected; the file only defines an event emitter and constants for Recharts synchronization events. |
| lib/util/FunnelUtils.js | safe | No malicious patterns detected; the file contains standard React component utility code with no network, filesystem, process, or dynamic execution behavior. |
| lib/util/Global.js | safe | No malicious patterns detected |
| lib/util/IfOverflow.js | safe | Cleared by Jev triage; no further analysis needed |
| lib/util/LRUCache.js | safe | This is a straightforward LRU cache implementation with no malicious patterns detected. |
| lib/util/LogUtils.js | safe | No malicious patterns detected |
| lib/util/PolarUtils.js | safe | No malicious patterns detected |
| lib/util/RadialBarUtils.js | safe | No malicious patterns detected; the file contains standard React component utilities with no network, filesystem, process, or dynamic execution code. |
| lib/util/ReactUtils.js | safe | No malicious patterns detected; the file contains standard React utility functions for handling component names and children arrays without any network, filesystem, or code execution activity. |
| lib/util/ReduceCSSCalc.js | safe | No malicious patterns detected; the code is a CSS calc() expression reducer with no network, filesystem, process, or dynamic code execution behavior. |
| lib/util/ScatterUtils.js | safe | No malicious patterns detected; the code is a standard React utility module for rendering scatter plot symbols with no network, filesystem, process, or dynamic execution behavior. |
| lib/util/TickUtils.js | safe | No malicious patterns detected; the file contains only benign utility functions for tick calculations and formatting. |
| lib/util/XAxisUtils.js | safe | No malicious patterns detected |
| lib/util/YAxisUtils.js | safe | No malicious patterns detected |
| lib/util/axisPropsAreEqual.js | safe | No malicious patterns detected |
| lib/util/createCartesianCharts.js | safe | No malicious patterns detected; the file contains only standard Babel-compiled helper functions for creating typed Cartesian chart wrappers with no network, filesystem, process, or dynamic code execution activity. |
| lib/util/createEventProxy.js | safe | No malicious patterns detected |
| lib/util/createPolarCharts.js | safe | No malicious patterns detected; the file only exports React chart helper factory functions with no network, filesystem, process, or obfuscated code. |
| lib/util/cursor/getCursorPoints.js | safe | No malicious patterns detected |
| lib/util/cursor/getCursorRectangle.js | safe | No malicious patterns detected |
| lib/util/cursor/getRadialCursorPoints.js | safe | This utility function only performs pure coordinate math for radial cursor placement with no network, filesystem, or dynamic code execution behavior. |
| lib/util/excludeEventProps.js | safe | No malicious patterns detected |
| lib/util/getActiveCoordinate.js | safe | This is a pure computation utility for chart coordinate calculations with no network, filesystem, process, or dynamic execution activity. |
| lib/util/getAxisTypeBasedOnLayout.js | safe | No malicious patterns detected |
| lib/util/getClassNameFromUnknown.js | safe | No malicious patterns detected |
| lib/util/getEveryNth.js | safe | No malicious patterns detected |
| lib/util/getRadiusAndStrokeWidthFromDot.js | safe | No malicious patterns detected |
| lib/util/getRelativeCoordinate.js | safe | No malicious patterns detected; the code is a benign utility for computing relative pointer coordinates from DOM events. |
| lib/util/getSliced.js | safe | No malicious patterns detected |
| lib/util/isDomainSpecifiedByUser.js | safe | No malicious patterns detected; the file contains pure domain-parsing utility logic for Recharts with no network, file system, process, or dynamic execution concerns. |
| lib/util/isWellBehavedNumber.js | safe | No malicious patterns detected |
| lib/util/payload/getUniqPayload.js | safe | No malicious patterns detected: the module only imports a lodash-compatible uniqBy utility and provides a pure helper for filtering unique payload values. |
| lib/util/propsAreEqual.js | safe | No malicious patterns detected; the file only contains standard React-Redux prop comparison logic with no network, filesystem, or dynamic code execution behavior. |
| lib/util/resolveDefaultProps.js | safe | The file contains only a utility function for resolving default props with no network, filesystem, process, or dynamic code execution activity. |
| lib/util/round.js | safe | No malicious patterns detected; the file contains only pure rounding utility functions with no network, filesystem, process, or dynamic code execution activity. |
| lib/util/scale/CartesianScaleHelper.js | safe | No malicious patterns detected |
| lib/util/scale/CustomScaleDefinition.js | safe | Cleared by Jev triage; no further analysis needed |
| lib/util/scale/RechartsScale.js | safe | No malicious patterns detected |
| lib/util/scale/createCategoricalInverse.js | safe | No malicious patterns detected; the code is a simple, self-contained binary search and scale utility with no network, filesystem, process, or dynamic execution activities. |
| lib/util/scale/getNiceTickValues.js | safe | No malicious patterns detected; the code is a pure mathematical utility for calculating chart tick values using decimal.js-light, with no network, filesystem, process, or dynamic execution activity. |
| lib/util/scale/index.js | safe | This module only re-exports two functions from a relative internal module and contains no network, filesystem, process, or dynamic code execution behavior. |
| lib/util/scale/util/arithmetic.js | safe | No malicious patterns detected; the code is a benign arithmetic utility using decimal.js-light with a loop limit to prevent infinite loops. |
| lib/util/stacks/getStackSeriesIdentifier.js | safe | No malicious patterns detected; the file is a simple utility function that safely retrieves an id property from an object. |
| lib/util/stacks/stackTypes.js | safe | Cleared by Jev triage; no further analysis needed |
| lib/util/svgPropertiesAndEvents.js | safe | No malicious patterns detected; the code is a benign utility for filtering SVG properties and event handlers from objects or React elements. |
| lib/util/svgPropertiesNoEvents.js | safe | No malicious patterns detected; the code is a straightforward SVG property filter utility used by the recharts library. |
| lib/util/tooltip/translate.js | safe | No malicious patterns detected; the file contains only pure utility functions for tooltip positioning in the recharts library. |
| lib/util/typedDataKey.js | safe | Cleared by Jev triage; no further analysis needed |
| lib/util/types.js | safe | No malicious patterns detected |
| lib/util/useAnimationId.js | safe | No malicious patterns detected |
| lib/util/useElementOffset.js | safe | No malicious patterns detected; the file contains a standard React hook for observing DOM element offsets using ResizeObserver. |
| lib/util/useId.js | safe | No malicious patterns detected; the code is a standard React useId fallback implementation. |
| lib/util/usePrefersReducedMotion.js | safe | No malicious patterns detected; the code is a standard React hook for detecting the prefers-reduced-motion media query. |
| lib/util/useReportScale.js | safe | The code is a standard React hook for reporting container scale, with no suspicious network, filesystem, process, or dynamic code execution patterns. |
| lib/util/useUniqueId.js | safe | No malicious patterns detected; the code is a straightforward React hook for generating unique IDs with no network, filesystem, or process activity. |
| lib/zIndex/DefaultZIndexes.js | safe | No malicious patterns detected |
| lib/zIndex/ZIndexLayer.js | safe | No malicious patterns detected |
| lib/zIndex/ZIndexPortal.js | safe | No malicious patterns detected; the code is a standard React/Redux component for managing z-index SVG portals. |
| lib/zIndex/getZIndexFromUnknown.js | safe | No malicious patterns detected |
| lib/zIndex/zIndexSelectors.js | safe | No malicious patterns detected; the code contains only standard reselect selector logic for z-index state management. |
Scanned versions of recharts
| Version | Verdict | Files | Scanned |
|---|---|---|---|
| 3.10.1 | No issues | 552 | Oct 6, 2026 |
Frequently asked questions
Is recharts safe to use?
Our AI source review of recharts@3.10.1 found no malicious code: no install-time payloads, credential theft, exfiltration, obfuscated loaders or backdoors.
Does recharts contain malware?
No malware was identified in recharts@3.10.1 when Togoder Security scanned it on Oct 6, 2026. A new version can still introduce malicious code, so scan the exact versions in your lockfile.
How was recharts checked?
Togoder Security downloaded the published npm package and had an AI model read its 552 source files, looking for install scripts, credential access, network exfiltration, obfuscation, backdoors and crypto-wallet theft. The results are cached by file hash and shown here.
How do I scan recharts together with the rest of my dependencies?
Upload your lockfile at https://security.togoder.click/scan or call the API documented at https://security.togoder.click/api-docs. Files that have already been scanned, like the ones in recharts@3.10.1, cost nothing.