Summary
Togoder Security scanned the npm package viem@2.23.2 on Oct 4, 2026. An AI review of 3209 source files produced 27 medium, 37 low severity findings. The overall verdict is medium: the findings flag risky but common patterns (dynamic code, unsafe defaults, broad file or network access) rather than confirmed malware.
Findings 64
Malformed URL
NPS-65A84F6BD16E
The RPC URL 'ttps://rpc.donatuz.com' is missing the leading 'h'. This could be a typo, but it also means the URL will be treated as a relative path or invalid protocol, potentially causing errors or unexpected behavior if the user relies on it for network requests.
Suspicious network requests
NPS-54715C84E6E8
The ccipRequest function performs outbound HTTP requests to URLs provided in the OffchainLookup error data. In a real Ethereum/CCIP context these URLs come from a smart contract, but the code does not validate or restrict URLs (e.g., no allowlist, no scheme check). This could potentially be abused (SSRF-like) if an attacker controls the contract or error data, and it introduces data exfiltration surface by sending {data}/{sender} payloads to arbitrary endpoints.
Resource exhaustion / unbounded recursion
NPS-4624D8B9DC66
The fromRlp function creates a cursor with recursiveReadLimit set to Number.POSITIVE_INFINITY, disabling the library's built-in protection against deeply nested RLP structures. Combined with recursive list parsing in readList/fromRlpCursor, a maliciously crafted deeply-nested RLP payload could cause stack exhaustion (RangeError: Maximum call stack size exceeded) or excessive memory consumption, resulting in a denial-of-service condition for callers that process untrusted RLP data.
Server-Side Request Forgery / SSRF
NPS-F10ACA6B93F4
The isImageUri function performs fetch(uri, { method: 'HEAD' }) on a URI that may be attacker-controlled (e.g. from ENS avatar records or NFT tokenURI). This can be used to probe internal network services or metadata endpoints (e.g. 169.254.169.254) if the URI is not validated against private IP ranges. No URL scheme/host allowlist beyond what resolveAvatarUri does is applied before the fetch.
Unvalidated URI passed to network fetch
NPS-2DBDD488A91C
getMetadataAvatarUri fetches an arbitrary URI and parses JSON, then passes the returned image field through parseAvatarUri, which may itself perform further fetches. This creates a chain of attacker-controlled outbound requests and potential JSON-based resource loading.
Potential message boundary / protocol confusion in extractMessages
NPS-9AD99A932848
extractMessages tracks only brace nesting and ignores string literals and escapes. JSON strings containing unmatched braces (e.g. '{"a":"}"}') will corrupt the nesting level, causing incorrect message splitting, dropped messages, or merged payloads. Depending on the caller, this can be used to smuggle or truncate messages across the IPC boundary.
Unvalidated filesystem path passed to net.connect
NPS-B54831844B0C
getIpcRpcClient(path) forwards the caller-supplied path directly to node:net connect() as an IPC endpoint with no normalization, allowlisting, or scope restriction. If path is influenced by untrusted input, it could connect to arbitrary local sockets (e.g. privileged daemons) rather than an intended package-scoped endpoint.
Unbounded JSON parsing from untrusted socket input
NPS-8F25A79D3461
The onData handler parses every complete JSON message received over the IPC socket with JSON.parse(). There is no validation, size limit, or schema check before parsing. A malicious or compromised peer can send arbitrarily large or deeply nested JSON, causing high CPU/memory usage (JSON bombs / DoS). The parsed object is then passed directly to onResponse().
Sensitive data handling
NPS-E2C6D874196C
The function receives private keys as parameters and uses them to sign hashes. While this is expected behavior for a multisig smart account utility, handling private keys in memory and passing them to a signing function introduces risk if the keys are logged, stored, or transmitted improperly. The code does not appear to exfiltrate keys, but the pattern warrants caution since private keys are highly sensitive credentials.
Potential for malicious factory
NPS-C0DB61B9C9EF
The factoryAddress is configurable by the caller (parameters.factoryAddress) and defaults to a hardcoded address. If a malicious factory is provided, it could deploy a backdoored smart account or perform arbitrary calls during account creation. This is a design risk inherent in account abstraction but should be clearly documented.
Hardcoded factory address
NPS-0D939F4D733A
A default factory address '0x5d82735936c6Cd5DE57cC3c1A799f6B2E6F933Df' is hardcoded instead of being derived from the provided entryPoint. This could lead to unexpected account creation address if the factory is not intended for the given chain/entryPoint, potentially causing loss of funds or incorrect account deployment.
Owner parsing without validation
NPS-122E16E38E49
The owner account is parsed via parseAccount(parameters.owner) without verifying that it is a valid EOA or that the address matches the expected owner. If an attacker can influence the owner parameter, they could set themselves as owner and drain funds.
External network request
NPS-F59A5AEFCCB1
The ccipRequest function performs fetch() calls to URLs provided by the contract error data (urls array from on-chain OffchainLookup error). This is expected behavior for CCIP-read / EIP-3668 offchain lookup, but the URLs are fully attacker-controllable via the smart contract being called. This means a malicious contract could direct requests to any host, including localhost/internal services (SSRF), potentially leaking the request data (which includes sender address and callData) to arbitrary endpoints. Additionally, results from these URLs are trusted and passed back into an on-chain callback, forming a trust chain that relies entirely on user-supplied endpoints.
Potential SSRF / trust boundary issue
NPS-70A531D4BE29
fetch URL construction uses string replacement of {sender} and {data} into the URL without validation that the resulting URL is a well-formed http(s) URL or that it does not target internal/private addresses. No allowlist, protocol restriction, or redirect handling is present. In a package-supplied utility this is normal for CCIP read implementations but is a security-sensitive pattern worth noting.
Potential denial of service via unbounded recursion
NPS-7256C45E9EE3
The createCursor call sets recursiveReadLimit to Number.POSITIVE_INFINITY, disabling the library's built-in recursion limit. A deeply nested or maliciously crafted RLP input can cause unbounded recursion in readList/fromRlpCursor, leading to a stack overflow and process crash (DoS).
Potential server-side request forgery (SSRF)
NPS-6B7DB777C907
The function 'isImageUri' performs a 'fetch' request to an arbitrary user-supplied URI without validating the protocol or target. This could allow an attacker to make requests to internal services or local files if the library is used in a server-side context.
Unvalidated external metadata fetching
NPS-B7FA8D643D0E
The function 'getMetadataAvatarUri' fetches JSON from the provided 'uri' without validating the protocol or host. This could lead to SSRF or data exfiltration if the URI is controlled by an attacker.
Undefined variable reference
NPS-6B1F3DB2E6B4
The code references a destructured variable reconnect in the expression const { attempts = 5, delay = 2_000 } = typeof reconnect === 'object' ? reconnect : {}; but reconnect is never imported, declared, or passed into getSocketRpcClient. This will cause a ReferenceError at runtime and suggests the file is incomplete or was tampered with.
Implicit trust in client-supplied paymaster functions
NPS-9C6A4AB13C9C
When paymaster is an object, the code directly assigns and later invokes getPaymasterStubData and getPaymasterData from that object without validation. The logic (getPaymasterData && getPaymasterStubData ? getPaymasterStubData : getPaymasterData) can cause a single function to be used for both stub and final paymaster data, potentially leaking data twice or executing unintended behavior if attacker-controlled.
Dynamic network request to user-controlled endpoints
NPS-4087BDDCD3C1
The code dynamically invokes paymaster action functions (getPaymasterStubData, getPaymasterData) that are provided either by the bundler client or via the paymaster parameter. These calls can send the full UserOperation request (including sender address, callData, signature, and paymaster context) to external paymaster URLs. While this is a legitimate ERC-4337 paymaster pattern, if an attacker can supply or override the paymaster configuration (e.g., through bundler client decorators, configuration injection, or a compromised dependency), user operation data and possibly signatures can be exfiltrated to an untrusted endpoint.
Test/Development utilities exported in production entrypoint
NPS-65130DA558E7
The file exports a large number of test-only utilities (e.g., impersonateAccount, setBalance, setCode, setNonce, setStorageAt, setRpcUrl, mine, reset, revert, loadState, dumpState, increaseTime, setNextBlockTimestamp, etc.) from the main public entrypoint. These methods can manipulate blockchain state, impersonate accounts, and modify balances/nonces. If an application bundles these exports and an attacker can influence which action is called (e.g., via dynamic dispatch or exposed API), it could lead to unauthorized state manipulation. While these are explicitly test utilities, their presence in the primary barrel file increases attack surface.
Embedded EVM Bytecode
NPS-DC868158F8F9
The file contains three large hardcoded EVM bytecode blobs exported as string constants. These are compiled smart contract bytecodes intended for on-chain deployment and calls (a deployless call pattern). While not malicious on their own, embedded bytecode is opaque and cannot be easily audited in source form; it is a common vector for hiding logic such as signature validation, delegatecall proxies, or subtle address-rewriting behavior.
Signature Validation / ECDSA Recovery Logic
NPS-CC6470400BEC
The universalSignatureValidatorByteCode contains embedded Solidity logic for validating ECDSA signatures, including the magic value 0x1626ba7e (ERC-1271 isValidSignature selector) and selective recovery logic. If this validator is used to verify wallet ownership (e.g., account abstraction), a flaw in the embedded bytecode could allow signature forgery or bypass of authorization checks.
Obfuscated / Non-Auditable Payload
NPS-6A6C1F2DD9BA
Bytecode strings in hex are effectively obfuscated relative to their source. Without decompilation or a matching verified source, the exact behavior of these contracts cannot be confirmed from this TypeScript file alone. This is a supply-chain risk: a tampered bytecode string would silently alter on-chain behavior while looking like normal constants.
Outbound network requests to user-supplied (on-chain) URLs
NPS-B8DFA312B226
ccipRequest() performs fetch() to URLs that originate from on-chain OffchainLookup error data (urls array). The URL, sender, and data are interpolated directly into the request URL ({sender}/{data}) and POST body without allowlisting, scheme validation, or restriction to https. A malicious or compromised contract can supply attacker-controlled URLs, turning this utility into a generic fetch primitive from the host application.
Unvalidated dynamic URL construction / template injection
NPS-AFCD9084AFC9
url.replace('{sender}', sender).replace('{data}', data) blindly substitutes on-chain-provided values into the request URL. If a contract supplies a URL template with unexpected schemes (e.g., file:, gopher:, or internal hosts), the request target is fully attacker-influenced. No protocol/allowlist check exists.
Weak Randomness for Identifier Generation
NPS-D5A6EFB6168C
The uid() function uses Math.random() to generate identifiers. Math.random() is not cryptographically secure and is predictable, which is unsuitable for security-sensitive uses such as tokens, session IDs, CSRF nonces, or password reset links. If this utility is used for such purposes, it could allow attackers to predict or brute-force generated values. This is a code-quality/security weakness rather than an active malicious pattern.
dynamic property access with user input
NPS-C8CDBB7DBAB2
Uses Proxy objects to dynamically resolve function/event names from ABI onto contract methods; this is a legitimate pattern for building a contract interface, not obfuscation or dynamic code execution.
top-level module side effects
NPS-DDCF0A001259
Module exports functions but does not execute network, file system, or process operations at import time. All behavior is invoked only when consumers call getContract and execute returned methods.
dynamic module loading
NPS-AE6157BFA7D4
Lazy-loads the CCIP utility module via require('../../utils/ccip.js') only when handling offchain lookup errors. This is a normal optimization pattern, not obfuscated or externally controlled loading.
external network interaction
NPS-C7F36ADABFB4
Performs eth_call RPC requests and offchainLookup HTTP fetches, which are expected behaviors for an Ethereum client library handling CCIP reads. No exfiltration to hardcoded servers.
No dynamic code execution / file / process access
NPS-D0193BDBD270
No eval, new Function, child_process, fs, env var harvesting, or credential file access was found. Network access is limited to the CCIP offchain lookup mechanism.
Data exfiltration
NPS-0D4A04613416
The code sends user/contract-provided data (callData and sender address) via POST/GET to externally controlled URLs. While this is the documented CCIP read pattern, from a pure static-analysis standpoint it constitutes sending application data to external servers without an explicit URL allowlist.
Missing input bound validation
NPS-B6020FCB1A3A
readLength trusts the encoded length bytes (readUint8/16/24/32) and passes them to cursor.readBytes / list iteration without clamping against remaining buffer size. While cursor.readBytes may throw on out-of-bounds, the use of readUint32 and the absence of a maximum-length guard can facilitate memory/CPU exhaustion attacks when parsing untrusted input.
Use of global Image constructor with remote src
NPS-5669630EDCF3
In the catch branch of isImageUri, a new Image() is created with img.src = uri. This performs a browser-side request to an unvalidated URI, which can be used for tracking/pixel-style requests or to probe client networks.
External gateway requests with user-influenced URLs
NPS-E0129329C8B7
resolveAvatarUri constructs URLs pointing at ipfs.io, arweave.net, or custom gateways from attacker-influenced fields (target/subtarget from regex match). A malicious target value could potentially redirect requests to unintended hosts via the subtarget/path components.
Potential SVG/script payload handling
NPS-E54325F19216
resolveAvatarUri base64-encodes raw '<svg' content into a data:image/svg+xml URI. If the consuming application renders this SVG without sanitization, embedded scripts/event handlers could execute (XSS). The code does not sanitize SVG contents.
Trusted Setup File Loading
NPS-755FBAB9CA91
The function loads a trusted setup from a file path provided as an argument. Depending on how this function is called, an attacker-controlled path could lead to reading arbitrary files. However, this is a standard pattern for KZG libraries and is not inherently malicious.
Unhandled exceptions in socket data handler
NPS-7461616AD45A
JSON.parse() inside onData is not wrapped in try/catch. A malformed frame throws synchronously from the socket 'data' event, which can crash the process or leave the RPC client in an inconsistent state (message corruption after partial parsing).
weak randomness
NPS-AC156082C37F
The uid function uses Math.random() for generating identifiers, which is not cryptographically secure. If these IDs are used for security-sensitive purposes (e.g., session tokens, password reset tokens), they could be predictable. However, this is a common pattern for non-security-related unique IDs and does not indicate malicious intent.
Stub signature hardcoded
NPS-A0639238031F
The getStubSignature method returns a fixed 65-byte signature (0xffff...1c) that is not derived from any input. This is typically used for gas estimation, but a static stub can be misused for replay attacks if not properly validated by the EntryPoint. However, this is standard practice in ERC-4337 account abstractions.
network-request
NPS-591DFDE6BFAA
The code performs network requests via client.request for eth_call, which is the intended functionality of this blockchain library (viem). No exfiltration or suspicious endpoints are present.
dynamic-import
NPS-3CD1E2E2A1D8
The code uses a dynamic import of '../../utils/ccip.js' inside a catch block for CCIP-Read offchain lookup handling. The path is hardcoded and static, not influenced by external input, so it is not a security concern.
Malformed URL containing whitespace
NPS-51399D01B848
The default RPC HTTP URL 'https://rpc-proxima.swanchain.io\t' contains a trailing tab character. While this may be an accidental formatting artifact, a malformed endpoint could cause errors or, in some tooling, be normalized in unexpected ways. It is not an exfiltration or code-execution pattern, but it reduces confidence in the definition and may point to sloppy generation.
External network requests
NPS-33C7D9DC5794
The function ultimately resolves and returns a URI (via getMetadataAvatarUri or parseAvatarUri) that may point to external gateways (gatewayUrls). This is expected behavior for an avatar resolver but could be used for tracking or fetching malicious content if the URI is attacker-controlled. No direct exfiltration of sensitive data is present.
Potential data URI parsing with atob
NPS-BD6F3251F8DF
The code decodes a base64-encoded data URI using atob() and then parses it as JSON. While not malicious by itself, this could allow for injection of arbitrary JSON data if the source (NFT tokenURI) is attacker-controlled, potentially leading to denial of service or unexpected behavior, though not direct code execution.
Use of user-controlled image source
NPS-131C1C44B1D9
In the error fallback of 'isImageUri', a new Image object is created with 'src' set to the user-provided URI. While this occurs only in browser environments, it could be exploited for client-side requests to internal resources or for tracking purposes.
Dynamic network connection to arbitrary URL
NPS-A566E359E740
The function accepts a caller-supplied url and passes it to getSocket, opening a WebSocket connection to that endpoint. Combined with the permissive caching keyed only on key:url and the ability to pass arbitrary JSON-RPC bodies (including eth_subscribe), this is a standard JSON-RPC client primitive, but any consumer supplying a malicious URL could be leveraged for SSRF or data exfiltration. No allowlist or scheme validation is present.
Unbounded retry/reconnect loop
NPS-49E374D5B458
The reconnect logic uses setTimeout with a fixed delay and increments a reconnectCount that is only reset on onOpen. Because reconnect is undefined, the object-destructuring path yields {}, so attempts and delay remain defaults; however if reconnect were later supplied with a large value this could create a sustained connect/disconnect loop. Minor concern in current form.
Unvalidated callback invocation with parsed response
NPS-F95EAD6C0E7B
onResponse receives the raw decoded JSON-RPC message and immediately looks up data.params.subscription without checking that data or data.params exist for non-subscription methods, and without validating the id type. Malformed or attacker-controlled server responses could cause type confusion or crashes, though no code execution is possible in plain JS here.
Dynamic import
NPS-B322085BE4C1
The module dynamically imports 'isows' to obtain the WebSocket implementation. This is a standard pattern for cross-environment WebSocket support and the import target is a hardcoded package name, not computed from external input.
Network communication
NPS-A99892041E03
The code opens a WebSocket connection to the provided 'url' and sends JSON-RPC requests (notably 'net_version'). This is the intended functionality of an RPC client and the URL is supplied by the caller, not harvested from credentials or environment.
Dynamic import
NPS-7ABB10B18922
The code uses a dynamic import() for '@noble/curves/secp256k1'. This is not computed or based on external input, and is a common pattern for lazy-loading dependencies. No malicious intent is evident.
hardcoded_trusted_contract_address
NPS-DAA1BAC472E2
The factory address default '0x5d82735936c6Cd5DE57cC3c1A799f6B2E6F933Df' is hardcoded. This is a normal design choice for a Solady Smart Account factory wrapper. It is not a malicious pattern, but integrators should verify this address independently if they do not override it.
Unbounded fee estimation buffer using Number conversion
NPS-6F5F52CEFF06
Fee values are converted using Number(2n * fees.maxFeePerGas) and similar expressions. For very large maxFeePerGas values this can exceed Number.MAX_SAFE_INTEGER and introduce precision loss, potentially altering transaction economics. This is a correctness issue that an attacker could exploit to craft unexpected fee values in edge cases, though not direct exfiltration.
Potential for address/account manipulation
NPS-DA85E46AA04F
Several exported wallet actions (e.g., requestAddresses, getAddresses, watchAsset, switchChain) interact with user wallets. A malicious dependency could potentially use these to trick users into approving malicious chains or assets. However, no direct malicious behavior is evident in this file; the risk depends on the implementation of the imported modules.
dynamic-import
NPS-96754AEE1BD2
Dynamic import of '../../utils/ccip.js' is performed inside the catch block. While this is a legitimate feature for CCIP-Read offchain lookup, dynamic imports can be abused in general if the path were computed from external input. Here the path is static, so risk is low, but noted as a potential red flag category.
external-network-request
NPS-90E12025B55B
The function performs RPC calls (client.request with eth_call) and can trigger offchainLookup which may fetch data from external URLs defined in the contract's CCIP-Read response. This is expected behavior for an Ethereum client library, not data exfiltration, but involves network requests to endpoints that could be attacker-controlled if the 'to' address or chain is untrusted.
state-override
NPS-B57DDC6239D9
Accepts 'stateOverride' parameter and serializes it for 'eth_call' RPC. State overrides can be used to manipulate contract state during calls and could be abused if input is not validated by the caller. However, this is an intended feature of the library.
Suspicious URL formatting
NPS-8BEC0F4518E8
The RPC HTTP URL contains a trailing tab character ('https://rpc-proxima.swanchain.io '), which is likely unintended and could cause connection failures or unexpected behavior. While not malicious, it is a code quality/security concern.
No Runtime Code Execution in Module Scope
NPS-28423784331B
No top-level code, dynamic imports, eval, child_process, network calls, or filesystem access are present in this module. The constants are inert strings until consumed by another module, so no install-time or import-time execution risk exists in this file itself.
Custom user hook overriding request behavior
NPS-C45A7FA661B9
client.ccipRead?.request can be user-supplied and completely replaces the default ccipRequest implementation, allowing arbitrary network behavior in an otherwise controlled code path. This is by design in the library, but it means callers can inject arbitrary request logic without auditing.
Untrusted response handling without size/content constraints
NPS-FF6622F9F7A4
The response is read as JSON or text without size limits or content validation before being re-encoded into an eth_call callback payload. A malicious CCIP server could return very large payloads (DoS) or unexpected content types, which are only loosely validated by isHex().
dynamic import
NPS-171703481727
The function dynamically imports @noble/curves/secp256k1 inside the function. This is a legitimate library for cryptographic operations and not an external input-controlled module load. No suspicious network or file access is present.
Files reviewed
| File | Verdict | What the reviewer saw |
|---|---|---|
| _cjs/chains/definitions/donatuz.js | medium | The file defines a blockchain chain configuration with a malformed RPC URL, likely a typo, but no other malicious patterns were detected. |
| _cjs/utils/ccip.js | medium | The file implements the standard EIP-3668 CCIP-read offchain lookup, but makes unvalidated network requests to URLs supplied in error data, which is a moderate concern in a third-party package context; no other malicious patterns were detected. |
| _cjs/utils/encoding/fromRlp.js | medium | The file contains no malicious patterns (no exfiltration, credential harvesting, code execution, or network/file/process access), but it disables recursion limits and lacks length bounds, creating a potential denial-of-service risk when parsing untrusted RLP input. |
| _cjs/utils/ens/avatar/utils.js | medium | No outright malicious patterns (no exfiltration, credential harvesting, eval, mining, or process spawning) were found, but the module performs fetches on attacker-influenced URIs without SSRF protections and base64-encodes unsanitized SVG content, which warrants security review. |
| _cjs/utils/rpc/ipc.js | medium | The IPC RPC client contains no exfiltration, credential harvesting, obfuscation, mining, backdoor, or process-spawning code, but it parses untrusted socket data with unbounded JSON.parse, has a brace-counting parser that mishandles JSON strings, and forwards an unvalidated path to net.connect, creating DoS and potential local-socket-abuse risks. |
| _cjs/zksync/accounts/toMultisigSmartAccount.js | medium | The code implements multisig signing with private keys as expected, but handling private keys in a third-party package poses a medium risk if the package is compromised or keys are mishandled. |
| _esm/account-abstraction/accounts/implementations/toSoladySmartAccount.js | medium | The code is part of a legitimate smart account implementation but contains several design risks such as hardcoded factory address, stub signature, and configurable factory that could lead to fund loss if parameters are not trusted. |
| _esm/chains/definitions/swanProximaTestnet.js | medium | The file defines a static blockchain chain configuration with no executable, network, credential, or obfuscation red flags; only a minor malformed RPC URL containing a trailing tab character was observed. |
| _esm/utils/ccip.js | medium | This is legitimate CCIP-read / EIP-3668 offchain lookup code with no malicious exfiltration of local files or credentials, but it performs user/contract-controlled outbound HTTP requests (potential SSRF surface) and trusts returned data in a callback, which is a low-to-medium security concern inherent to the protocol. |
| _esm/utils/encoding/fromRlp.js | medium | The RLP decoding logic appears functionally benign with no exfiltration, credential harvesting, or code execution patterns, but explicitly disables the recursive read limit, exposing consumers to stack-overflow denial-of-service on untrusted input. |
| _esm/utils/ens/avatar/parseAvatarRecord.js | medium | The code is a legitimate ENS avatar parser with no clear malicious patterns, but it processes external URIs and decodes base64 JSON, which pose minor risks if inputs are untrusted. |
| _esm/utils/ens/avatar/utils.js | medium | The code contains potential SSRF risks through unvalidated fetch requests to user-supplied URIs, but no direct malicious patterns such as data exfiltration, credential harvesting, or backdoors were detected. |
| _esm/utils/rpc/socket.js | medium | Standard JSON-RPC WebSocket client with no exfiltration, credential harvesting, eval, child_process, or backdoor patterns, but it contains an undefined reconnect variable that would break execution and includes an unvalidated URL/response handling path. |
| account-abstraction/actions/bundler/prepareUserOperation.ts | medium | No direct malicious patterns (exfiltration, credential harvesting, shell execution, obfuscation) are present, but the code legitimately forwards UserOperation data to dynamically resolved paymaster functions, which represents a potential data exposure risk if the paymaster configuration is attacker-controlled. |
| actions/index.ts | medium | The file is a barrel export of many blockchain utility functions, including test-only state manipulation methods, but contains no direct malicious patterns such as exfiltration, credential harvesting, or code execution. |
| actions/public/call.ts | medium | This is the standard viem library 'call' action implementing eth_call with multicall batching, deployless calls, and CCIP-Read support; no malicious patterns such as exfiltration, credential harvesting, obfuscation, or process spawning were detected. |
| chains/definitions/swanProximaTestnet.ts | medium | The file defines a blockchain chain configuration and appears benign, but contains a minor URL formatting issue with a trailing tab character. |
| constants/contracts.ts | medium | The file exports hardcoded EVM bytecode for deployless contract calls and signature validation; no direct malicious runtime behavior is present, but the opaque embedded bytecode cannot be verified from source and could conceal unsafe on-chain logic if tampered with. |
| utils/ccip.ts | medium | This is standard viem CCIP-read code with no exfiltration, credential harvesting, process spawning, or obfuscation, but it makes outbound HTTP requests to on-chain-controlled URLs without allowlisting, which is an inherent SSRF-style risk surface if used with untrusted contracts. |
| utils/uid.ts | medium | No malicious behavior detected, but the uid() helper relies on non-cryptographic Math.random(), making it unsafe for security-sensitive identifier generation. |
| _cjs/account-abstraction/accounts/createWebAuthnCredential.js | safe | The code is a straightforward wrapper around WebAuthn credential creation with no malicious patterns detected. |
| _cjs/account-abstraction/accounts/implementations/toCoinbaseSmartAccount.js | safe | This is a legitimate Coinbase Smart Wallet account abstraction module with no malicious patterns detected. |
| _cjs/account-abstraction/accounts/implementations/toSoladySmartAccount.js | safe | The code is a standard ERC-4337 smart account implementation for Solady accounts, with no malicious patterns detected. |
| _cjs/account-abstraction/accounts/toSmartAccount.js | safe | No malicious patterns detected |
| _cjs/account-abstraction/accounts/toWebAuthnAccount.js | safe | No malicious patterns detected; the file implements a WebAuthn account abstraction with no exfiltration, obfuscation, or suspicious behavior. |
Show 1975 more files
| File | Verdict | What the reviewer saw |
|---|---|---|
| _cjs/account-abstraction/accounts/types.js | safe | No malicious patterns detected |
| _cjs/account-abstraction/actions/bundler/estimateUserOperationGas.js | safe | No malicious patterns detected; the code is a standard account abstraction utility for estimating user operation gas via an RPC call. |
| _cjs/account-abstraction/actions/bundler/getSupportedEntryPoints.js | safe | No malicious patterns detected |
| _cjs/account-abstraction/actions/bundler/getUserOperation.js | safe | No malicious patterns detected; the code performs a standard JSON-RPC request to fetch user operation data and formats the response. |
| _cjs/account-abstraction/actions/bundler/getUserOperationReceipt.js | safe | The code performs a standard JSON-RPC request to fetch a user operation receipt and formats the result; no malicious patterns detected. |
| _cjs/account-abstraction/actions/bundler/prepareUserOperation.js | safe | No malicious patterns detected; the code is a standard user operation preparation utility for an Ethereum account abstraction library. |
| _cjs/account-abstraction/actions/bundler/sendUserOperation.js | safe | No malicious patterns detected; the code is a standard ERC-4337 user operation submission utility that constructs and sends RPC requests without any obfuscation, data exfiltration, credential harvesting, or dynamic code execution. |
| _cjs/account-abstraction/actions/bundler/waitForUserOperationReceipt.js | safe | No malicious patterns detected in the provided waitForUserOperationReceipt utility code. |
| _cjs/account-abstraction/actions/paymaster/getPaymasterData.js | safe | No malicious patterns detected |
| _cjs/account-abstraction/actions/paymaster/getPaymasterStubData.js | safe | No malicious patterns detected |
| _cjs/account-abstraction/clients/createBundlerClient.js | safe | No malicious patterns detected; the code is a straightforward factory for creating a bundler client with standard imports and no suspicious behavior. |
| _cjs/account-abstraction/clients/createPaymasterClient.js | safe | No malicious patterns detected; the code is a standard client factory for a paymaster client in an account abstraction library. |
| _cjs/account-abstraction/clients/decorators/bundler.js | safe | No malicious patterns detected; the file only aggregates user operation actions and delegates to trusted internal modules without suspicious behavior. |
| _cjs/account-abstraction/clients/decorators/paymaster.js | safe | No malicious patterns detected |
| _cjs/account-abstraction/constants/abis.js | safe | No malicious patterns detected |
| _cjs/account-abstraction/constants/address.js | safe | No malicious patterns detected |
| _cjs/account-abstraction/errors/bundler.js | safe | This file only defines error classes for bundler/account-abstraction errors, with no network, filesystem, process, or dynamic code execution behavior. |
| _cjs/account-abstraction/errors/userOperation.js | safe | No malicious patterns detected; the file contains only error class definitions for user operation handling with no network, filesystem, process, or dynamic execution behavior. |
| _cjs/account-abstraction/index.js | safe | No malicious patterns detected; the file is a standard module barrel/index file for an account abstraction library, re-exporting symbols via Object.defineProperty with no execution of untrusted code or network/file system access. |
| _cjs/account-abstraction/types/account.js | safe | No malicious patterns detected in the provided file. |
| _cjs/account-abstraction/types/entryPointVersion.js | safe | No malicious patterns detected |
| _cjs/account-abstraction/types/rpc.js | safe | No malicious patterns detected |
| _cjs/account-abstraction/types/userOperation.js | safe | The file contains only TypeScript compression boilerplate for a type declaration module, with no executable code or malicious patterns. |
| _cjs/account-abstraction/utils/errors/getBundlerError.js | safe | No malicious patterns detected |
| _cjs/account-abstraction/utils/errors/getUserOperationError.js | safe | No malicious patterns detected |
| _cjs/account-abstraction/utils/formatters/userOperation.js | safe | No malicious patterns detected; the code only performs deterministic BigInt conversion for user operation parameters. |
| _cjs/account-abstraction/utils/formatters/userOperationGas.js | safe | Cleared by Jev triage; no further analysis needed |
| _cjs/account-abstraction/utils/formatters/userOperationReceipt.js | safe | No malicious patterns detected; the code performs straightforward formatting of user operation receipt data without any exfiltration, obfuscation, or dynamic execution. |
| _cjs/account-abstraction/utils/formatters/userOperationRequest.js | safe | No malicious patterns detected; the file is a straightforward formatter that hex-encodes numeric fields for a UserOperation RPC request with no network, filesystem, process, or dynamic code execution activity. |
| _cjs/account-abstraction/utils/userOperation/getUserOperationHash.js | safe | No malicious patterns detected |
| _cjs/account-abstraction/utils/userOperation/toPackedUserOperation.js | safe | No malicious patterns detected |
| _cjs/accounts/generateMnemonic.js | safe | No malicious patterns detected |
| _cjs/accounts/generatePrivateKey.js | safe | No malicious patterns detected; the code uses the reputable @noble/curves library to generate a secp256k1 private key and encodes it to hex. |
| _cjs/accounts/hdKeyToAccount.js | safe | No malicious patterns detected; the code is a standard HD key to account conversion utility with no exfiltration, obfuscation, network, or process execution. |
| _cjs/accounts/index.js | safe | This is a standard module index file that re-exports Ethereum account utilities; it contains no malicious patterns, network calls, dynamic code execution, or credential harvesting. |
| _cjs/accounts/mnemonicToAccount.js | safe | No malicious patterns detected; the code is a straightforward mnemonic-to-account conversion utility using standard cryptographic libraries with no network, filesystem, process, or obfuscated behavior. |
| _cjs/accounts/privateKeyToAccount.js | safe | No malicious patterns detected; the code is a standard viem-style utility for creating an Ethereum account from a private key. |
| _cjs/accounts/toAccount.js | safe | The file contains a straightforward utility function for converting input into an account object, with no malicious patterns such as data exfiltration, dynamic code execution, or environment manipulation. |
| _cjs/accounts/types.js | safe | No malicious patterns detected |
| _cjs/accounts/utils/parseAccount.js | safe | No malicious patterns detected |
| _cjs/accounts/utils/privateKeyToAddress.js | safe | No malicious patterns detected; the code performs standard secp256k1 public key derivation and address computation without exfiltration, obfuscation, or side effects. |
| _cjs/accounts/utils/publicKeyToAddress.js | safe | No malicious patterns detected; the code performs a standard Ethereum public key to address conversion using keccak256 and checksum formatting. |
| _cjs/accounts/utils/sign.js | safe | No malicious patterns detected |
| _cjs/accounts/utils/signAuthorization.js | safe | No malicious patterns detected; the code is a straightforward EIP-7702 authorization signing utility with no external data handling, network calls, or dynamic code execution. |
| _cjs/accounts/utils/signMessage.js | safe | No malicious patterns detected; the file only implements cryptographic message signing using local utility imports. |
| _cjs/accounts/utils/signTransaction.js | safe | No malicious patterns detected; the code is a standard cryptographic transaction signing utility with no network, filesystem, or process activity. |
| _cjs/accounts/utils/signTypedData.js | safe | No malicious patterns detected; the code is a straightforward typed-data signing utility with no exfiltration, obfuscation, network, filesystem, or process-spawning behavior. |
| _cjs/accounts/wordlists.js | safe | No malicious patterns detected |
| _cjs/actions/ens/getEnsAddress.js | safe | No malicious patterns detected; the code implements standard ENS address resolution using viem's built-in utilities and contract reads. |
| _cjs/actions/ens/getEnsAvatar.js | safe | No malicious patterns detected |
| _cjs/actions/ens/getEnsName.js | safe | No malicious patterns detected |
| _cjs/actions/ens/getEnsResolver.js | safe | No malicious patterns detected; the code performs standard ENS resolver lookups via contract reads and imports only local utility modules. |
| _cjs/actions/ens/getEnsText.js | safe | No malicious patterns detected; the code is a standard ENS text record resolver implementation using contract reads and ABI encoding/decoding. |
| _cjs/actions/getContract.js | safe | No malicious patterns detected; the file is a standard viem-style contract interaction helper with expected dynamic ABI method resolution and no data exfiltration, credential harvesting, obfuscation, or process execution. |
| _cjs/actions/index.js | safe | No malicious patterns detected; this is a standard Ethereum/viem action re-export index file. |
| _cjs/actions/public/call.js | safe | The file is a legitimate viem Ethereum RPC call implementation with expected network interactions, no obfuscation, credential harvesting, shell execution, or malicious patterns. |
| _cjs/actions/public/createAccessList.js | safe | No malicious patterns detected; the code is a standard viem library function for creating Ethereum access lists. |
| _cjs/actions/public/createBlockFilter.js | safe | No malicious patterns detected; the code performs a standard Ethereum JSON-RPC call to create a block filter with no exfiltration, credential harvesting, obfuscation, or suspicious behavior. |
| _cjs/actions/public/createContractEventFilter.js | safe | No malicious patterns detected; the code is a standard Ethereum contract event filter creation function from the viem library. |
| _cjs/actions/public/createEventFilter.js | safe | No malicious patterns detected |
| _cjs/actions/public/createPendingTransactionFilter.js | safe | No malicious patterns detected; the code is a standard Ethereum JSON-RPC client method for creating a pending transaction filter. |
| _cjs/actions/public/estimateContractGas.js | safe | No malicious patterns detected; the code is a standard library function for estimating contract gas in a blockchain client. |
| _cjs/actions/public/estimateFeesPerGas.js | safe | No malicious patterns detected; the file contains legitimate Ethereum fee estimation logic using standard viem library imports and no suspicious behavior. |
| _cjs/actions/public/estimateGas.js | safe | No malicious patterns detected; the code is a standard viem library function for estimating gas via eth_estimateGas RPC calls. |
| _cjs/actions/public/estimateMaxPriorityFeePerGas.js | safe | No malicious patterns detected; the code appears to be a legitimate library function for estimating Ethereum transaction fees. |
| _cjs/actions/public/getBalance.js | safe | No malicious patterns detected; the file is a straightforward Ethereum JSON-RPC getBalance helper with no network exfiltration, credential access, obfuscation, or process execution. |
| _cjs/actions/public/getBlobBaseFee.js | safe | No malicious patterns detected |
| _cjs/actions/public/getBlock.js | safe | No malicious patterns detected |
| _cjs/actions/public/getBlockNumber.js | safe | No malicious patterns detected; the code is a straightforward Ethereum JSON-RPC wrapper that caches block numbers with no exfiltration, credential access, obfuscation, or process spawning. |
| _cjs/actions/public/getBlockTransactionCount.js | safe | No malicious patterns detected |
| _cjs/actions/public/getChainId.js | safe | No malicious patterns detected; the file contains a standard Ethereum JSON-RPC call to retrieve the chain ID. |
| _cjs/actions/public/getCode.js | safe | No malicious patterns detected |
| _cjs/actions/public/getContractEvents.js | safe | No malicious patterns detected; the code is a standard Ethereum contract event retrieval utility with no exfiltration, obfuscation, or dynamic execution. |
| _cjs/actions/public/getEip712Domain.js | safe | No malicious patterns detected |
| _cjs/actions/public/getFeeHistory.js | safe | No malicious patterns detected |
| _cjs/actions/public/getFilterChanges.js | safe | No malicious patterns detected; the code performs legitimate Ethereum JSON-RPC filter change retrieval and log parsing. |
| _cjs/actions/public/getFilterLogs.js | safe | No malicious patterns detected; the code is a straightforward Ethereum filter logs retrieval and parsing utility. |
| _cjs/actions/public/getGasPrice.js | safe | No malicious patterns detected |
| _cjs/actions/public/getLogs.js | safe | No malicious patterns detected |
| _cjs/actions/public/getProof.js | safe | No malicious patterns detected; the code is a standard Ethereum JSON-RPC getProof implementation with no exfiltration, obfuscation, or suspicious behavior. |
| _cjs/actions/public/getStorageAt.js | safe | No malicious patterns detected; the file is a straightforward viem library wrapper that calls eth_getStorageAt via the provided client. |
| _cjs/actions/public/getTransaction.js | safe | No malicious patterns detected; the code is a legitimate Ethereum JSON-RPC utility for fetching transaction data. |
| _cjs/actions/public/getTransactionConfirmations.js | safe | No malicious patterns detected; the code is a benign utility for calculating transaction confirmations using standard Ethereum client actions. |
| _cjs/actions/public/getTransactionCount.js | safe | No malicious patterns detected |
| _cjs/actions/public/getTransactionReceipt.js | safe | No malicious patterns detected; the code is a standard Ethereum JSON-RPC method wrapper for fetching transaction receipts. |
| _cjs/actions/public/multicall.js | safe | No malicious patterns detected; the code is a standard multicall implementation for Ethereum smart contract interactions. |
| _cjs/actions/public/readContract.js | safe | No malicious patterns detected; the file is a standard viem readContract utility with no exfiltration, obfuscation, dynamic execution, or suspicious I/O. |
| _cjs/actions/public/simulateBlocks.js | safe | No malicious patterns detected; this is a legitimate viem-style RPC simulation module with no data exfiltration, credential harvesting, obfuscation, or process execution. |
| _cjs/actions/public/simulateCalls.js | safe | No malicious patterns detected; the code is a standard Ethereum simulation utility using inline deployless call bytecode for balance queries and does not exfiltrate data, execute arbitrary code, or spawn processes. |
| _cjs/actions/public/simulateContract.js | safe | No malicious patterns detected; the code is a standard Ethereum contract simulation utility with no external data transmission, credential access, dynamic code execution, or other suspicious behavior. |
| _cjs/actions/public/uninstallFilter.js | safe | No malicious patterns detected; the file is a simple, legitimate Ethereum JSON-RPC helper for uninstalling a filter. |
| _cjs/actions/public/verifyHash.js | safe | No malicious patterns detected; the code implements a legitimate Ethereum signature verification utility without data exfiltration, credential harvesting, obfuscation, mining, backdoors, or suspicious network/file/process activity. |
| _cjs/actions/public/verifyMessage.js | safe | No malicious patterns detected; the file is a straightforward Ethers-style message verification wrapper that hashes input and delegates to verifyHash without any exfiltration, obfuscation, process spawning, or install-time execution. |
| _cjs/actions/public/verifyTypedData.js | safe | No malicious patterns detected; the code is a straightforward typed-data verification utility with only static module imports and no network, filesystem, process, or dynamic-execution behavior. |
| _cjs/actions/public/waitForTransactionReceipt.js | safe | The code is a legitimate Ethereum transaction receipt waiting utility that uses standard blockchain interaction patterns without any malicious behavior. |
| _cjs/actions/public/watchBlockNumber.js | safe | No malicious patterns detected; the code is a standard blockchain block number watcher from the viem library with no data exfiltration, credential harvesting, obfuscation, or other security concerns. |
| _cjs/actions/public/watchBlocks.js | safe | No malicious patterns detected; the code is a standard blockchain block watcher utility with no exfiltration, credential harvesting, obfuscation, or network abuse. |
| _cjs/actions/public/watchContractEvent.js | safe | No malicious patterns detected; the code is a standard viem library utility for watching contract events with no exfiltration, credential harvesting, obfuscation, or other red flags. |
| _cjs/actions/public/watchEvent.js | safe | No malicious patterns detected; the code is a legitimate event watcher for blockchain logs with no data exfiltration, credential harvesting, dynamic code execution, or other security concerns. |
| _cjs/actions/public/watchPendingTransactions.js | safe | No malicious patterns detected; this is a legitimate viem library utility for watching pending blockchain transactions. |
| _cjs/actions/siwe/verifySiweMessage.js | safe | No malicious patterns detected; the code performs standard SIWE message verification using local utility functions without any exfiltration, obfuscation, or suspicious behavior. |
| _cjs/actions/wallet/addChain.js | safe | No malicious patterns detected; the code is a straightforward wrapper for the EIP-3085 wallet_addEthereumChain RPC call. |
| _cjs/actions/wallet/deployContract.js | safe | No malicious patterns detected |
| _cjs/actions/wallet/getAddresses.js | safe | No malicious patterns detected |
| _cjs/actions/wallet/getPermissions.js | safe | No malicious patterns detected; the file is a straightforward wrapper for the wallet_getPermissions RPC method with no suspicious behavior. |
| _cjs/actions/wallet/prepareTransactionRequest.js | safe | No malicious patterns detected; the code is a legitimate Ethereum transaction preparation module with no data exfiltration, credential harvesting, or backdoor behavior. |
| _cjs/actions/wallet/requestAddresses.js | safe | No malicious patterns detected; the code simply requests Ethereum addresses from a client and normalizes them. |
| _cjs/actions/wallet/requestPermissions.js | safe | No malicious patterns detected; code is a straightforward wrapper for a wallet permission request RPC call. |
| _cjs/actions/wallet/sendRawTransaction.js | safe | The code is a simple wrapper for sending raw Ethereum transactions via a client request, with no malicious patterns such as exfiltration, credential harvesting, obfuscation, or dynamic code execution. |
| _cjs/actions/wallet/sendTransaction.js | safe | No malicious patterns detected; the code is a standard Ethereum transaction sending utility from viem library with no data exfiltration, credential harvesting, obfuscation, or unauthorized system access. |
| _cjs/actions/wallet/signMessage.js | safe | No malicious patterns detected; the code is a standard wallet signMessage action that delegates signing and makes a single RPC request without data exfiltration, obfuscation, or process execution. |
| _cjs/actions/wallet/signTransaction.js | safe | No malicious patterns detected |
| _cjs/actions/wallet/signTypedData.js | safe | No malicious patterns detected; the code is a standard Ethereum EIP-712 typed data signing utility with no network exfiltration, credential harvesting, obfuscation, or filesystem/process manipulation. |
| _cjs/actions/wallet/switchChain.js | safe | No malicious patterns detected |
| _cjs/actions/wallet/watchAsset.js | safe | No malicious patterns detected |
| _cjs/actions/wallet/writeContract.js | safe | No malicious patterns detected |
| _cjs/celo/chainConfig.js | safe | No malicious patterns detected; the file only re-exports chain configuration objects from relative modules. |
| _cjs/celo/fees.js | safe | No malicious patterns detected |
| _cjs/celo/formatters.js | safe | No malicious patterns detected; the code is a standard blockchain transaction/block formatter with no network, filesystem, process, or obfuscation activity. |
| _cjs/celo/index.js | safe | No malicious patterns detected; this is a simple barrel index file re-exporting chainConfig, parseTransaction, and serializeTransaction with no runtime side effects or suspicious behavior. |
| _cjs/celo/parsers.js | safe | No malicious patterns detected; the file contains standard Celo transaction parsing logic without exfiltration, code execution, or lifecycle hooks. |
| _cjs/celo/serializers.js | safe | No malicious patterns detected; the code implements CIP-42/64 transaction serialization and validation with no data exfiltration, credential harvesting, dynamic execution, or other suspicious behavior. |
| _cjs/celo/types.js | safe | No malicious patterns detected |
| _cjs/celo/utils.js | safe | No malicious patterns detected; the code contains only simple utility functions for value checks and transaction type detection with no network, filesystem, or process activity. |
| _cjs/chains/definitions/0g.js | safe | No malicious patterns detected; the file only defines a blockchain network configuration using a standard defineChain utility. |
| _cjs/chains/definitions/5ireChain.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/abey.js | safe | No malicious patterns detected; the file only defines a blockchain network configuration using a local utility import. |
| _cjs/chains/definitions/abstract.js | safe | This file is a standard chain definition for the Abstract blockchain network, containing only static configuration data and no malicious patterns. |
| _cjs/chains/definitions/abstractTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/acala.js | safe | No malicious patterns detected; the file is a standard chain definition module with static configuration data only. |
| _cjs/chains/definitions/acria.js | safe | No malicious patterns detected; the file only defines chain metadata (id, name, RPC URL, explorer) with no suspicious behavior. |
| _cjs/chains/definitions/adf.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static metadata and no executable or network-triggering code. |
| _cjs/chains/definitions/aioz.js | safe | No malicious patterns detected; the file is a standard chain definition for AIOZ Network with no obfuscation, network requests, or system access. |
| _cjs/chains/definitions/alephZero.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/alephZeroTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/alienX.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/alienXHalTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/ancient8.js | safe | No malicious patterns detected; the file is a standard chain configuration definition with no executable or exfiltration behavior. |
| _cjs/chains/definitions/ancient8Sepolia.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/anvil.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/apeChain.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/apexTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/arbitrum.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/arbitrumGoerli.js | safe | No malicious patterns detected; the file is a standard chain definition for Arbitrum Goerli with no dynamic execution, network calls, or credential harvesting. |
| _cjs/chains/definitions/arbitrumNova.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/arbitrumSepolia.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/areonNetwork.js | safe | No malicious patterns detected in the chain definition file; it only contains standard blockchain network configuration. |
| _cjs/chains/definitions/areonNetworkTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/artelaTestnet.js | safe | No malicious patterns detected; the file is a standard chain definition configuration for Artela Testnet. |
| _cjs/chains/definitions/arthera.js | safe | This file is a standard chain definition for the Arthera network and contains no malicious patterns or security concerns. |
| _cjs/chains/definitions/artheraTestnet.js | safe | No malicious patterns detected; the file is a simple, static chain definition for the Arthera Testnet. |
| _cjs/chains/definitions/assetChain.js | safe | The file contains only a static chain definition with hardcoded RPC and explorer URLs and no malicious patterns or dynamic behavior. |
| _cjs/chains/definitions/assetChainTestnet.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static URLs and contract addresses. |
| _cjs/chains/definitions/astar.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/astarZkEVM.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/astarZkyoto.js | safe | This file only defines a blockchain chain configuration object with a static RPC URL and multicall contract address, and contains no malicious patterns such as data exfiltration, credential harvesting, obfuscation, or dynamic code execution. |
| _cjs/chains/definitions/atletaOlympia.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/aurora.js | safe | No malicious patterns detected; the file is a standard chain definition for Aurora with no network, filesystem, process, or obfuscated code. |
| _cjs/chains/definitions/auroraTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/auroria.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/avalanche.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/avalancheFuji.js | safe | This file only defines a static blockchain chain configuration for Avalanche Fuji testnet with no malicious patterns or suspicious behavior. |
| _cjs/chains/definitions/b3.js | safe | No malicious patterns detected; the file is a static chain definition with no network, filesystem, or code-execution behavior beyond a declarative RPC URL. |
| _cjs/chains/definitions/b3Sepolia.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/bahamut.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/base.js | safe | No malicious patterns detected; the file is a standard chain configuration definition for Base using the viem library. |
| _cjs/chains/definitions/baseGoerli.js | safe | This file is a standard blockchain chain definition configuration for Base Goerli (a testnet), containing only static RPC URLs, contract addresses, and chain metadata with no malicious patterns. |
| _cjs/chains/definitions/baseSepolia.js | safe | No malicious patterns detected; the file only defines a static chain configuration for Base Sepolia with fixed contract addresses and RPC endpoints. |
| _cjs/chains/definitions/beam.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration object with static RPC URLs, explorer URL, and multicall contract address. |
| _cjs/chains/definitions/beamTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/bearNetworkChainMainnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/bearNetworkChainTestnet.js | safe | No malicious patterns detected; the file only defines a blockchain testnet configuration with standard RPC and explorer URLs. |
| _cjs/chains/definitions/berachain.js | safe | This file is a static chain definition for Berachain with no executable, network, or credential-harvesting logic; no malicious patterns detected. |
| _cjs/chains/definitions/berachainTestnet.js | safe | No malicious patterns detected; the file only defines a static blockchain network configuration object with no external calls, dynamic code, or process execution. |
| _cjs/chains/definitions/berachainTestnetbArtio.js | safe | No malicious patterns detected; this is a standard chain definition file for a testnet. |
| _cjs/chains/definitions/bevmMainnet.js | safe | No malicious patterns detected; the file only defines blockchain chain metadata for BEVM Mainnet. |
| _cjs/chains/definitions/bifrost.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/birdlayer.js | safe | No malicious patterns detected; the file is a standard chain definition module with static RPC and explorer URLs. |
| _cjs/chains/definitions/bitTorrent.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/bitTorrentTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/bitgert.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/bitkub.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static values and no dynamic execution, network requests, or credential access. |
| _cjs/chains/definitions/bitkubTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/bitlayer.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/bitlayerTestnet.js | safe | No malicious patterns detected; the file only defines a blockchain testnet chain configuration. |
| _cjs/chains/definitions/bitrock.js | safe | No malicious patterns detected; the file simply defines a blockchain chain configuration for Bitrock Mainnet. |
| _cjs/chains/definitions/blast.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/blastSepolia.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/bob.js | safe | No malicious patterns detected; this is a standard chain definition file for the BOB blockchain using the OP Stack. |
| _cjs/chains/definitions/bobSepolia.js | safe | This is a standard blockchain chain definition file (BOB Sepolia testnet) with no malicious patterns or security concerns detected. |
| _cjs/chains/definitions/boba.js | safe | No malicious patterns detected; the file defines a standard blockchain chain configuration for Boba Network. |
| _cjs/chains/definitions/bobaSepolia.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/boolBetaMainnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/botanixTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/bounceBit.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static RPC and explorer URLs. |
| _cjs/chains/definitions/bounceBitTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/bronos.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/bronosTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/bsc.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/bscGreenfield.js | safe | No malicious patterns detected; the file only defines blockchain chain metadata for BNB Greenfield using a static configuration. |
| _cjs/chains/definitions/bscTestnet.js | safe | This file contains a static chain definition for Binance Smart Chain Testnet and shows no malicious patterns or security concerns. |
| _cjs/chains/definitions/bsquared.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/bsquaredTestnet.js | safe | The file contains a standard chain definition for a testnet with no malicious patterns, external data exfiltration, or dynamic code execution. |
| _cjs/chains/definitions/btr.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/btrTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/bxn.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/bxnTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/cannon.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/canto.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/celo.js | safe | This file is a standard blockchain chain definition for Celo with no malicious patterns, external data exfiltration, dynamic execution, or filesystem/process manipulation. |
| _cjs/chains/definitions/celoAlfajores.js | safe | No malicious patterns detected; the file is a standard chain definition object with static configuration and no executable behavior beyond module exports. |
| _cjs/chains/definitions/chang.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/chiliz.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/chips.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with a static RPC URL. |
| _cjs/chains/definitions/citreaTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/classic.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/coinbit.js | safe | No malicious patterns detected; the file defines a static chain configuration with no network calls, credential access, code execution, or filesystem manipulation. |
| _cjs/chains/definitions/coinex.js | safe | No malicious patterns detected in the chain definition file; it only exports static configuration for the CoinEx chain. |
| _cjs/chains/definitions/confluxESpace.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/confluxESpaceTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/coreDao.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/corn.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/cornTestnet.js | safe | No malicious patterns detected; the file defines a standard EVM chain configuration with static RPC URLs and contract addresses. |
| _cjs/chains/definitions/crab.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration using safe, static imports and hardcoded RPC endpoints. |
| _cjs/chains/definitions/creatorTestnet.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static URLs and no executable or exfiltration logic. |
| _cjs/chains/definitions/creditCoin3Mainnet.js | safe | The file defines a blockchain network chain configuration with no malicious patterns, network requests are strictly limited to declared RPC and explorer URLs for the Creditcoin3 Mainnet. |
| _cjs/chains/definitions/creditCoin3Testnet.js | safe | No malicious patterns detected; the file only exports a static chain configuration object with no execution of external code or suspicious operations. |
| _cjs/chains/definitions/cronos.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/cronosTestnet.js | safe | No malicious patterns detected; the file is a standard chain definition for Cronos Testnet containing only static configuration data. |
| _cjs/chains/definitions/cronoszkEVM.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/cronoszkEVMTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/crossbell.js | safe | No malicious patterns detected; the file is a standard viem chain definition with static configuration and no executable or exfiltration logic. |
| _cjs/chains/definitions/curtis.js | safe | The file only defines a static blockchain chain configuration using a helper, with no network, filesystem, process, or dynamic code execution patterns. |
| _cjs/chains/definitions/cyber.js | safe | No malicious patterns detected; the file only defines a blockchain network configuration for the Cyber chain. |
| _cjs/chains/definitions/cyberTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/dailyNetwork.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static RPC and explorer URLs. |
| _cjs/chains/definitions/dailyNetworkTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/darwinia.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/dchain.js | safe | This is a standard blockchain chain definition configuration file with no malicious patterns, obfuscation, network exfiltration, or execution of external code. |
| _cjs/chains/definitions/dchainTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/defichainEvm.js | safe | No malicious patterns detected; the file only defines a static blockchain chain configuration object. |
| _cjs/chains/definitions/defichainEvmTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/degen.js | safe | No malicious patterns detected; the file only declares a blockchain chain configuration with static RPC and explorer URLs. |
| _cjs/chains/definitions/dfk.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/diode.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration object with static RPC URLs and explorer info. |
| _cjs/chains/definitions/disChain.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/dodochainTestnet.js | safe | No malicious patterns detected; this file is a benign chain definition for the DODOchain Testnet. |
| _cjs/chains/definitions/dogechain.js | safe | The file contains only a static chain definition configuration with no executable logic, network requests, or suspicious patterns. |
| _cjs/chains/definitions/dosChain.js | safe | This file is a standard chain definition for DOS Chain using the viem library, containing only static configuration with no malicious patterns, dynamic execution, network activity, or credential access. |
| _cjs/chains/definitions/dosChainTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/dreyerxMainnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/dreyerxTestnet.js | safe | No malicious patterns detected; the file only defines a static blockchain testnet chain configuration. |
| _cjs/chains/definitions/dustboyIoT.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static RPC and explorer URLs. |
| _cjs/chains/definitions/dymension.js | safe | No malicious patterns detected; the code only defines a blockchain chain configuration with static RPC and explorer URLs. |
| _cjs/chains/definitions/edgeless.js | safe | No malicious patterns detected; the file is a simple chain definition with static configuration data and no executable or exfiltration logic. |
| _cjs/chains/definitions/edgelessTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/edgeware.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/edgewareTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/ekta.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with a static RPC URL and block explorer links. |
| _cjs/chains/definitions/ektaTestnet.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static URLs and no dynamic execution, network calls, or credential access. |
| _cjs/chains/definitions/elastos.js | safe | No malicious patterns detected; the file is a standard chain definition for Elastos Smart Chain with no suspicious behavior. |
| _cjs/chains/definitions/elastosTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/electroneum.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/electroneumTestnet.js | safe | No malicious patterns detected; the file only defines a static blockchain chain configuration using viem's defineChain utility. |
| _cjs/chains/definitions/elysiumTestnet.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static RPC and explorer URLs. |
| _cjs/chains/definitions/energy.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with public RPC and explorer URLs. |
| _cjs/chains/definitions/enuls.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static RPC and explorer URLs. |
| _cjs/chains/definitions/eon.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/eos.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static RPC URLs and contract addresses. |
| _cjs/chains/definitions/eosTestnet.js | safe | No malicious patterns detected; the file only defines a static blockchain chain configuration using defineChain with no dynamic code execution, network requests, filesystem access, or credential handling. |
| _cjs/chains/definitions/etherlink.js | safe | No malicious patterns detected; the file is a benign chain definition with no external data access, code execution, or suspicious behavior. |
| _cjs/chains/definitions/etherlinkTestnet.js | safe | No malicious patterns detected; the file is a standard chain definition with no executable code, network calls, or filesystem access. |
| _cjs/chains/definitions/etp.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/evmos.js | safe | No malicious patterns detected; the file is a standard chain definition with static RPC and explorer URLs. |
| _cjs/chains/definitions/evmosTestnet.js | safe | No malicious patterns detected; the file only defines static chain metadata using a standard helper import. |
| _cjs/chains/definitions/exSat.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static RPC and explorer URLs. |
| _cjs/chains/definitions/exSatTestnet.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static RPC and explorer URLs. |
| _cjs/chains/definitions/excelonMainnet.js | safe | No malicious patterns detected in the chain definition file. |
| _cjs/chains/definitions/expanse.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static RPC and explorer URLs. |
| _cjs/chains/definitions/fantom.js | safe | No malicious patterns detected; the file only defines a static chain configuration for Fantom. |
| _cjs/chains/definitions/fantomSonicTestnet.js | safe | No malicious patterns detected; the file only defines a blockchain testnet chain configuration with no executable, network, or filesystem activity beyond standard module exports. |
| _cjs/chains/definitions/fantomTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/fibo.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with a static RPC URL and block explorer. |
| _cjs/chains/definitions/filecoin.js | safe | No malicious patterns detected; the file is a benign chain definition module for Filecoin Mainnet. |
| _cjs/chains/definitions/filecoinCalibration.js | safe | No malicious patterns detected; the file only defines a static blockchain chain configuration with public RPC and explorer URLs. |
| _cjs/chains/definitions/filecoinHyperspace.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/flare.js | safe | No malicious patterns detected; the file simply defines a blockchain chain configuration with static values. |
| _cjs/chains/definitions/flareTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/flowMainnet.js | safe | No malicious patterns detected; the file defines chain configuration for Flow EVM Mainnet with no suspicious behavior. |
| _cjs/chains/definitions/flowPreviewnet.js | safe | This is a standard chain definition file for a blockchain network (Flow EVM Previewnet) that only contains configuration data and imports a utility function; no malicious patterns detected. |
| _cjs/chains/definitions/flowTestnet.js | safe | No malicious patterns detected; the file only defines blockchain chain metadata for Flow EVM Testnet with static configuration. |
| _cjs/chains/definitions/fluence.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration. |
| _cjs/chains/definitions/fluenceStage.js | safe | This file only defines a blockchain chain configuration (RPC URLs, explorer, currency), with no obfuscation, dynamic execution, exfiltration, credential harvesting, or install-time behavior. |
| _cjs/chains/definitions/fluenceTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/forma.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/forta.js | safe | No malicious patterns detected; the file simply defines a blockchain chain configuration with a public RPC URL and block explorer. |
| _cjs/chains/definitions/foundry.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/fraxtal.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/fraxtalTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/funkiMainnet.js | safe | This file defines a blockchain chain configuration object with no executable, network, or filesystem activity beyond static data and standard module imports. |
| _cjs/chains/definitions/funkiSepolia.js | safe | No malicious patterns detected; the file is a standard chain definition module for the viem library. |
| _cjs/chains/definitions/fuse.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration using a standard utility function. |
| _cjs/chains/definitions/fuseSparknet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/fusion.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static RPC URLs and contract addresses. |
| _cjs/chains/definitions/fusionTestnet.js | safe | No malicious patterns detected; this file only defines a blockchain network configuration. |
| _cjs/chains/definitions/garnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/geist.js | safe | No malicious patterns detected; the file is a standard chain definition configuration for the Geist Mainnet. |
| _cjs/chains/definitions/genesys.js | safe | No malicious patterns detected; this file only defines a blockchain network chain configuration with standard RPC and explorer URLs. |
| _cjs/chains/definitions/glideL1Protocol.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static RPC and explorer URLs. |
| _cjs/chains/definitions/glideL2Protocol.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/gnosis.js | safe | No malicious patterns detected; the file is a standard chain definition for Gnosis with static configuration. |
| _cjs/chains/definitions/gnosisChiado.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/goChain.js | safe | No malicious patterns detected; the file only defines a blockchain network configuration using a standard utility function. |
| _cjs/chains/definitions/goat.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/gobi.js | safe | No malicious patterns detected; the file only defines a blockchain network configuration using a standard library import. |
| _cjs/chains/definitions/godwoken.js | safe | No malicious patterns detected; the file only defines chain metadata for the Godwoken Mainnet. |
| _cjs/chains/definitions/goerli.js | safe | No malicious patterns detected; the file is a standard chain definition for Goerli used by viem, containing only RPC URLs, block explorer info, and known contract addresses. |
| _cjs/chains/definitions/gravity.js | safe | No malicious patterns detected; the file is a standard chain definition module with no executable or exfiltration behavior. |
| _cjs/chains/definitions/guruNetwork.js | safe | No malicious patterns detected; the file is a benign chain definition module that only exports static chain metadata. |
| _cjs/chains/definitions/guruTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/ham.js | safe | No malicious patterns detected; this is a standard chain definition file with static RPC and explorer URLs. |
| _cjs/chains/definitions/happychainTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/haqqMainnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/haqqTestedge2.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/hardhat.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/harmonyOne.js | safe | This is a benign chain definition file for Harmony One with only static configuration data and no malicious patterns. |
| _cjs/chains/definitions/hashKeyChain.js | safe | The file defines a blockchain chain configuration with only static data and no malicious patterns detected. |
| _cjs/chains/definitions/hashkeyChainTestnet.js | safe | No malicious patterns detected; the file only defines a static blockchain chain configuration. |
| _cjs/chains/definitions/hedera.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/hederaPreviewnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/hederaTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/hela.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/hemi.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with a static RPC URL and block explorer. |
| _cjs/chains/definitions/hemiSepolia.js | safe | No malicious patterns detected; the file only defines chain metadata for Hemi Sepolia. |
| _cjs/chains/definitions/holesky.js | safe | No malicious patterns detected; the file is a standard chain definition for the Holesky testnet with static configuration. |
| _cjs/chains/definitions/hpb.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/huddle01Mainnet.js | safe | No malicious patterns detected; this is a standard blockchain chain definition file with static configuration values. |
| _cjs/chains/definitions/huddle01Testnet.js | safe | No malicious patterns detected; the file is a simple chain definition with static configuration data. |
| _cjs/chains/definitions/humanode.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static RPC URLs and a multicall contract address. |
| _cjs/chains/definitions/humanodeTestnet5.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static RPC URLs and a multicall contract address. |
| _cjs/chains/definitions/hychain.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/hychainTestnet.js | safe | No malicious patterns detected; this is a standard chain definition file for HYCHAIN Testnet with static configuration only. |
| _cjs/chains/definitions/iSunCoin.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/idchain.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static RPC URLs and no execution of external input or sensitive operations. |
| _cjs/chains/definitions/immutableZkEvm.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/immutableZkEvmTestnet.js | safe | No malicious patterns detected; the file only defines chain configuration metadata using the standard defineChain utility. |
| _cjs/chains/definitions/inEVM.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/initVerse.js | safe | The file is a standard blockchain chain definition for InitVerse and contains no malicious patterns. |
| _cjs/chains/definitions/initVerseGenesis.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration using standard viem utilities. |
| _cjs/chains/definitions/ink.js | safe | No malicious patterns detected; the file defines a blockchain chain configuration with static RPC URLs and contract addresses without any dynamic, obfuscated, or exfiltrating behavior. |
| _cjs/chains/definitions/inkSepolia.js | safe | No malicious patterns detected; this file is a standard chain definition for Ink Sepolia testnet with no dynamic execution, exfiltration, or credential access. |
| _cjs/chains/definitions/iota.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/iotaTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/iotex.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/iotexTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/jbc.js | safe | No malicious patterns detected; this is a standard chain definition file for the viem library. |
| _cjs/chains/definitions/jbcTestnet.js | safe | No malicious patterns detected; the file only defines a blockchain testnet chain configuration. |
| _cjs/chains/definitions/kaia.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static RPC URLs and contract addresses. |
| _cjs/chains/definitions/kairos.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/kakarotSepolia.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/kakarotStarknetSepolia.js | safe | No malicious patterns detected; file only defines a blockchain chain configuration with static RPC and explorer URLs. |
| _cjs/chains/definitions/kardiaChain.js | safe | This file defines a blockchain chain configuration for KardiaChain with no malicious patterns, dynamic execution, or suspicious behavior. |
| _cjs/chains/definitions/karura.js | safe | No malicious patterns detected; file only defines a static chain configuration for Karura. |
| _cjs/chains/definitions/kava.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/kavaTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/kcc.js | safe | No malicious patterns detected; the file defines a blockchain chain configuration using standard viem utilities with no suspicious behavior. |
| _cjs/chains/definitions/kinto.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/klaytn.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/klaytnBaobab.js | safe | The file is a standard viem chain definition for Klaytn Baobab Testnet with no malicious patterns, external data flows, or dynamic execution. |
| _cjs/chains/definitions/koi.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with standard RPC URLs and contract addresses. |
| _cjs/chains/definitions/kroma.js | safe | No malicious patterns detected; the file only defines a static chain configuration for Kroma using a local utility module. |
| _cjs/chains/definitions/kromaSepolia.js | safe | No malicious patterns detected; the file is a standard chain definition module with static configuration data. |
| _cjs/chains/definitions/l3x.js | safe | The file only defines a blockchain chain configuration with static RPC and explorer URLs, no malicious patterns detected. |
| _cjs/chains/definitions/l3xTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/lavita.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/lensTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/lightlinkPegasus.js | safe | No malicious patterns detected; this is a standard chain definition file for a testnet configuration. |
| _cjs/chains/definitions/lightlinkPhoenix.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/linea.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/lineaGoerli.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration using a standard library import. |
| _cjs/chains/definitions/lineaSepolia.js | safe | No malicious patterns detected; the file only defines a static blockchain chain configuration with no dynamic execution, data exfiltration, or credential harvesting. |
| _cjs/chains/definitions/lineaTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/lisk.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with constants and no dynamic behavior. |
| _cjs/chains/definitions/liskSepolia.js | safe | No malicious patterns detected; the file is a standard chain definition module for Lisk Sepolia in a blockchain library. |
| _cjs/chains/definitions/localhost.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/loop.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/lukso.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration. |
| _cjs/chains/definitions/luksoTestnet.js | safe | No malicious patterns detected; the file is a standard blockchain chain definition for LUKSO Testnet with no obfuscation, network exfiltration, credential harvesting, or dynamic code execution. |
| _cjs/chains/definitions/lumiaMainnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/lumiaTestnet.js | safe | No malicious patterns detected; the file is a standard blockchain chain definition configuration with no executable or exfiltration behavior. |
| _cjs/chains/definitions/lycan.js | safe | No malicious patterns detected; file only defines chain configuration metadata for Lycan blockchain with static RPC URLs. |
| _cjs/chains/definitions/lyra.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration object using a standard library utility. |
| _cjs/chains/definitions/mainnet.js | safe | No malicious patterns detected; the code is a static Ethereum mainnet chain definition with no network, filesystem, or dynamic execution activity. |
| _cjs/chains/definitions/mandala.js | safe | No malicious patterns detected; the file is a standard chain definition for the Mandala testnet with no suspicious behavior. |
| _cjs/chains/definitions/manta.js | safe | No malicious patterns detected; the file only exports a static chain definition using viem's defineChain utility. |
| _cjs/chains/definitions/mantaSepoliaTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/mantaTestnet.js | safe | No malicious patterns detected; file is a static chain definition for Manta Pacific Testnet with no executable or exfiltration logic. |
| _cjs/chains/definitions/mantle.js | safe | The file contains only a static chain definition for Mantle with no executable, network, or suspicious behavior beyond declaring RPC and explorer URLs and a multicall contract address. |
| _cjs/chains/definitions/mantleSepoliaTestnet.js | safe | No malicious patterns detected; the file only defines a static blockchain chain configuration. |
| _cjs/chains/definitions/mantleTestnet.js | safe | No malicious patterns detected; the file is a standard chain definition for Mantle Testnet with no obfuscation, credential access, network exfiltration, or dynamic code execution. |
| _cjs/chains/definitions/mapProtocol.js | safe | No malicious patterns detected; the file only defines a static blockchain chain configuration using standard library utilities. |
| _cjs/chains/definitions/matchain.js | safe | No malicious patterns detected in the Matchain chain definition file; it only contains static configuration data. |
| _cjs/chains/definitions/matchainTestnet.js | safe | No malicious patterns detected; this file only defines a blockchain chain configuration with a static RPC URL and block explorer. |
| _cjs/chains/definitions/mchVerse.js | safe | The file defines a static blockchain chain configuration with no malicious patterns, network calls, or code execution. |
| _cjs/chains/definitions/mekong.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/meld.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/merlin.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static RPC and explorer URLs. |
| _cjs/chains/definitions/metachain.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/metachainIstanbul.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration using standard library utilities. |
| _cjs/chains/definitions/metadium.js | safe | No malicious patterns detected; this file only defines a blockchain chain configuration object with static public RPC and explorer URLs. |
| _cjs/chains/definitions/metalL2.js | safe | No malicious patterns detected; this is a standard chain definition file with static configuration and no dynamic or suspicious behavior. |
| _cjs/chains/definitions/meter.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/meterTestnet.js | safe | No malicious patterns detected; the file only defines a blockchain testnet configuration with static data and no runtime side effects. |
| _cjs/chains/definitions/metis.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/metisGoerli.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/metisSepolia.js | safe | No malicious patterns detected; the file only defines a static blockchain chain configuration for Metis Sepolia with no network, filesystem, or execution side effects. |
| _cjs/chains/definitions/mev.js | safe | No malicious patterns detected; the file defines a blockchain chain configuration with no executable or suspicious code. |
| _cjs/chains/definitions/mevTestnet.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static RPC URLs and contract addresses. |
| _cjs/chains/definitions/mint.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with no network, filesystem, or code execution behavior beyond static data. |
| _cjs/chains/definitions/mintSepoliaTestnet.js | safe | No malicious patterns detected; the file is a simple chain definition configuration for Mint Sepolia Testnet. |
| _cjs/chains/definitions/mitosisTestnet.js | safe | This file only defines a blockchain chain configuration using a standard library helper and contains no malicious patterns. |
| _cjs/chains/definitions/mode.js | safe | This file contains only static chain configuration data for Mode Mainnet with no malicious patterns detected. |
| _cjs/chains/definitions/modeTestnet.js | safe | No malicious patterns detected; this is a standard chain definition file for the Mode Testnet network with static configuration. |
| _cjs/chains/definitions/monadTestnet.js | safe | No malicious patterns detected; the file only defines a static blockchain testnet chain configuration. |
| _cjs/chains/definitions/moonbaseAlpha.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/moonbeam.js | safe | No malicious patterns detected; the file is a standard blockchain chain definition configuration with no executable code, network exfiltration, credential harvesting, or other security concerns. |
| _cjs/chains/definitions/moonbeamDev.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/moonriver.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static RPC URLs and contract addresses. |
| _cjs/chains/definitions/morph.js | safe | This file contains only a static chain configuration definition for the Morph network with no executable, obfuscated, or exfiltration logic. |
| _cjs/chains/definitions/morphHolesky.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/morphSepolia.js | safe | No malicious patterns detected; the file only defines a blockchain network configuration object. |
| _cjs/chains/definitions/nahmii.js | safe | No malicious patterns detected; the file only defines a blockchain network configuration with no network requests, dynamic execution, credential access, or process spawning. |
| _cjs/chains/definitions/nautilus.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/near.js | safe | This is a simple chain definition file for NEAR Protocol with static configuration and no malicious patterns detected. |
| _cjs/chains/definitions/nearTestnet.js | safe | No malicious patterns detected; this file only defines a NEAR Protocol Testnet chain configuration with static, hardcoded RPC and explorer URLs. |
| _cjs/chains/definitions/neonDevnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/neonMainnet.js | safe | No malicious patterns detected; the file is a standard chain definition configuration for Neon EVM MainNet. |
| _cjs/chains/definitions/neoxMainnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/neoxT4.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/nexi.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/nexilix.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/oasisTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/oasys.js | safe | No malicious patterns detected; the file only defines blockchain chain metadata for the Oasys network. |
| _cjs/chains/definitions/odysseyTestnet.js | safe | No malicious patterns detected; the file simply defines a blockchain network configuration with no execution, exfiltration, or suspicious behavior. |
| _cjs/chains/definitions/okc.js | safe | No malicious patterns detected; the file only defines a standard blockchain chain configuration with static RPC URLs and contract addresses. |
| _cjs/chains/definitions/omax.js | safe | No malicious patterns detected; the file defines a standard blockchain chain configuration with static RPC and explorer URLs. |
| _cjs/chains/definitions/oneWorld.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/oortmainnetDev.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration using static data. |
| _cjs/chains/definitions/opBNB.js | safe | This is a standard chain definition file for opBNB with no malicious patterns detected. |
| _cjs/chains/definitions/opBNBTestnet.js | safe | No malicious patterns detected; the file is a standard chain definition module containing only static configuration data. |
| _cjs/chains/definitions/optimism.js | safe | No malicious patterns detected; the file is a standard chain definition for Optimism with no data exfiltration, obfuscation, or suspicious behavior. |
| _cjs/chains/definitions/optimismGoerli.js | safe | No malicious patterns detected; the file is a standard chain definition for Optimism Goerli with static configuration data. |
| _cjs/chains/definitions/optimismSepolia.js | safe | This is a standard chain definition file for the OP Sepolia testnet with no malicious patterns detected. |
| _cjs/chains/definitions/optopia.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/optopiaTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/orderly.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static data and no executable or exfiltrating behavior. |
| _cjs/chains/definitions/orderlySepolia.js | safe | No malicious patterns detected; the file only defines a static blockchain testnet configuration. |
| _cjs/chains/definitions/otimDevnet.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with hardcoded URL and contract address. |
| _cjs/chains/definitions/palm.js | safe | No malicious patterns detected; the file is a standard viem chain definition for the Palm network using only static configuration data. |
| _cjs/chains/definitions/palmTestnet.js | safe | No malicious patterns detected; the file only defines a static chain configuration for Palm Testnet using a standard library helper. |
| _cjs/chains/definitions/pgn.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/pgnTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/phoenix.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/planq.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/playfiAlbireo.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static URLs and contract address. |
| _cjs/chains/definitions/plinga.js | safe | The file defines a blockchain network configuration with no malicious patterns, external data exfiltration, or dynamic code execution. |
| _cjs/chains/definitions/plume.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/plumeDevnet.js | safe | No malicious patterns detected; the file is a standard chain definition with static RPC endpoints and no data exfiltration, credential harvesting, code execution, or process spawning. |
| _cjs/chains/definitions/plumeTestnet.js | safe | This file contains only static chain definition metadata for Plume Testnet with no executable, network, or filesystem behavior beyond standard exports. |
| _cjs/chains/definitions/polterTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/polygon.js | safe | No malicious patterns detected; this is a benign chain definition for Polygon containing only static RPC and contract configuration. |
| _cjs/chains/definitions/polygonAmoy.js | safe | No malicious patterns detected; the file is a standard chain definition for Polygon Amoy with no data exfiltration, obfuscation, or harmful behavior. |
| _cjs/chains/definitions/polygonMumbai.js | safe | No malicious patterns detected; the file only defines a static blockchain chain configuration with no dynamic execution, network exfiltration, or suspicious behavior. |
| _cjs/chains/definitions/polygonZkEvm.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/polygonZkEvmCardona.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static RPC and explorer URLs. |
| _cjs/chains/definitions/polygonZkEvmTestnet.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration using standard exports and requires. |
| _cjs/chains/definitions/premiumBlock.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/pulsechain.js | safe | No malicious patterns detected; the file only contains static chain configuration data with no executable or suspicious behavior. |
| _cjs/chains/definitions/pulsechainV4.js | safe | No malicious patterns detected; the file only defines a testnet chain configuration using static, well-known public endpoints and addresses. |
| _cjs/chains/definitions/pumpfiTestnet.js | safe | No malicious patterns detected; the file only defines a blockchain testnet chain configuration using a standard utility import. |
| _cjs/chains/definitions/qMainnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/qTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/ql1.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/real.js | safe | This file is a benign blockchain chain definition for re.al, containing only static configuration data with no malicious patterns. |
| _cjs/chains/definitions/redbellyMainnet.js | safe | No malicious patterns detected; this file is a standard blockchain chain definition with static configuration data. |
| _cjs/chains/definitions/redbellyTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/reddioSepolia.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration using imported utilities. |
| _cjs/chains/definitions/redstone.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/rei.js | safe | This file is a standard chain definition for REI Mainnet with no malicious patterns or suspicious behavior. |
| _cjs/chains/definitions/reyaNetwork.js | safe | No malicious patterns detected; the file is a standard chain definition for Reya Network with static configuration data and no executable code beyond a benign function call. |
| _cjs/chains/definitions/rivalz.js | safe | No malicious patterns detected; the file only defines a blockchain network configuration using a standard chain definition utility. |
| _cjs/chains/definitions/rollux.js | safe | No malicious patterns detected; the file is a standard chain definition for Rollux Mainnet with no network, filesystem, or code execution behavior. |
| _cjs/chains/definitions/rolluxTestnet.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static URLs and contract addresses. |
| _cjs/chains/definitions/ronin.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration using standard imports and static data. |
| _cjs/chains/definitions/root.js | safe | No malicious patterns detected; the file is a standard chain definition module with static configuration and no executable or suspicious behavior. |
| _cjs/chains/definitions/rootPorcini.js | safe | No malicious patterns detected; the code is a standard chain definition file for a testnet blockchain. |
| _cjs/chains/definitions/rootstock.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/rootstockTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/rss3.js | safe | No malicious patterns detected; this is a standard blockchain chain configuration file for RSS3 VSL Mainnet with static contract addresses and RPC URLs. |
| _cjs/chains/definitions/rss3Sepolia.js | safe | No malicious patterns detected; the file only exports a static chain configuration object with no executable or network-harvesting code. |
| _cjs/chains/definitions/saakuru.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/saga.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with RPC URLs and contract metadata. |
| _cjs/chains/definitions/saigon.js | safe | No malicious patterns detected; the file only defines a static blockchain testnet configuration. |
| _cjs/chains/definitions/sanko.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/sapphire.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/sapphireTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/satoshivm.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static RPC and explorer URLs. |
| _cjs/chains/definitions/satoshivmTestnet.js | safe | No malicious patterns detected; the file only defines a blockchain network configuration with no executable, exfiltration, or obfuscated code. |
| _cjs/chains/definitions/scroll.js | safe | No malicious patterns detected; the file is a standard chain definition for Scroll with no install-time execution, network exfiltration, or suspicious behavior. |
| _cjs/chains/definitions/scrollSepolia.js | safe | No malicious patterns detected; this is a standard chain definition file for Scroll Sepolia with no data exfiltration, credential harvesting, obfuscation, or suspicious runtime behavior. |
| _cjs/chains/definitions/sei.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static public RPC endpoints and a standard multicall contract address. |
| _cjs/chains/definitions/seiDevnet.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static URLs and no dynamic code execution, network requests, or credential access. |
| _cjs/chains/definitions/seiTestnet.js | safe | The file defines a blockchain testnet chain configuration using a standard defineChain utility and contains no malicious patterns such as data exfiltration, credential harvesting, dynamic code execution, or network abuse beyond static RPC endpoint declarations. |
| _cjs/chains/definitions/sepolia.js | safe | No malicious patterns detected; the file is a standard chain definition for Sepolia with no obfuscation, exfiltration, or dangerous operations. |
| _cjs/chains/definitions/shape.js | safe | This is a benign chain configuration file for the Shape network that only defines static chain metadata and contract addresses with no malicious patterns. |
| _cjs/chains/definitions/shapeSepolia.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/shardeumSphinx.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/shibarium.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/shibariumTestnet.js | safe | No malicious patterns detected; the file only defines a chain configuration with static RPC URLs and contract addresses. |
| _cjs/chains/definitions/shiden.js | safe | The file contains a standard chain definition for the Shiden network with no malicious patterns, no dynamic code execution, no credential harvesting, and no suspicious network or file system operations. |
| _cjs/chains/definitions/shimmer.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static URLs. |
| _cjs/chains/definitions/shimmerTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/sidra.js | safe | No malicious patterns detected; the file only defines blockchain chain metadata with no execution of external code or sensitive operations. |
| _cjs/chains/definitions/silicon.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/siliconSepolia.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/sixProtocol.js | safe | No malicious patterns detected; the file only defines a static blockchain chain configuration. |
| _cjs/chains/definitions/skale/brawl.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/skale/calypso.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with no network calls, credential access, obfuscation, or process execution. |
| _cjs/chains/definitions/skale/calypsoTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/skale/cryptoBlades.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/skale/cryptoColosseum.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static RPC URLs and contract metadata. |
| _cjs/chains/definitions/skale/europa.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/skale/europaTestnet.js | safe | No malicious patterns detected; the file is a standard blockchain chain definition with no executable or exfiltration logic. |
| _cjs/chains/definitions/skale/exorde.js | safe | No malicious patterns detected; the file only defines a blockchain network configuration using a standard chain definition utility. |
| _cjs/chains/definitions/skale/humanProtocol.js | safe | No malicious patterns detected; the file is a static chain definition with only RPC and explorer URLs, no dynamic execution or data exfiltration. |
| _cjs/chains/definitions/skale/nebula.js | safe | This is a static chain configuration file for SKALE Nebula that defines network parameters without any malicious patterns, dynamic execution, network exfiltration, or installation-time behavior. |
| _cjs/chains/definitions/skale/nebulaTestnet.js | safe | No malicious patterns detected; the file is a standard chain definition for the SKALE Nebula Testnet with static configuration data and no executable or external-fetching logic. |
| _cjs/chains/definitions/skale/razor.js | safe | No malicious patterns detected; the file only defines a blockchain network configuration with static, hardcoded values. |
| _cjs/chains/definitions/skale/titan.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/skale/titanTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/sketchpad.js | safe | No malicious patterns detected; the file only defines a static blockchain chain configuration with hardcoded public RPC and explorer URLs. |
| _cjs/chains/definitions/snax.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/snaxTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/soneium.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static RPC URLs and contract addresses. |
| _cjs/chains/definitions/soneiumMinato.js | safe | No malicious patterns detected; this is a standard chain definition configuration file. |
| _cjs/chains/definitions/songbird.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/songbirdTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/sonic.js | safe | This is a standard chain definition file for the Sonic blockchain, containing only static configuration data with no malicious patterns. |
| _cjs/chains/definitions/sonicTestnet.js | safe | This file is a straightforward chain definition for Sonic Testnet with no malicious patterns, obfuscation, network exfiltration, or dynamic execution. |
| _cjs/chains/definitions/sophon.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/sophonTestnet.js | safe | No malicious patterns detected; the file is a standard chain definition with static configuration only. |
| _cjs/chains/definitions/spicy.js | safe | No malicious patterns detected; the file only defines a static blockchain chain configuration with no executable, network, or filesystem side effects. |
| _cjs/chains/definitions/step.js | safe | No malicious patterns detected; the file only defines a blockchain network configuration with static RPC and explorer URLs. |
| _cjs/chains/definitions/story.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/storyOdyssey.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/storyTestnet.js | safe | No malicious patterns detected; the file only defines a static blockchain chain configuration with no executable payloads, network calls, or file system access. |
| _cjs/chains/definitions/stratis.js | safe | No malicious patterns detected; the file simply defines a blockchain chain configuration using the viem library. |
| _cjs/chains/definitions/superlumio.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/superposition.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/superseed.js | safe | No malicious patterns detected in the Superseed chain definition; it is a standard viem chain configuration with static RPC URLs, contract addresses, and no executable or exfiltration behavior. |
| _cjs/chains/definitions/superseedSepolia.js | safe | No malicious patterns detected; this file only defines a blockchain chain configuration with static RPC and contract addresses. |
| _cjs/chains/definitions/swan.js | safe | No malicious patterns detected; the file contains only a static chain definition with a hardcoded RPC URL and block explorer. |
| _cjs/chains/definitions/swanProximaTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/swanSaturnTestnet.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static properties and no dynamic, network, or filesystem operations. |
| _cjs/chains/definitions/swellchain.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/swissdlt.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static RPC and explorer URLs. |
| _cjs/chains/definitions/syscoin.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration for Syscoin Mainnet with static, non-executable data. |
| _cjs/chains/definitions/syscoinTestnet.js | safe | No malicious patterns detected in this chain definition file; it contains only static configuration data for the Syscoin Tanenbaum Testnet. |
| _cjs/chains/definitions/taiko.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with standard RPC and explorer URLs. |
| _cjs/chains/definitions/taikoHekla.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/taikoJolnir.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration using a standard utility function. |
| _cjs/chains/definitions/taikoKatla.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static RPC and explorer URLs. |
| _cjs/chains/definitions/taikoTestnetSepolia.js | safe | This is a standard chain definition file with no malicious patterns detected. |
| _cjs/chains/definitions/taraxa.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/taraxaTestnet.js | safe | No malicious patterns detected; this is a standard chain definition file with no network, filesystem, or process activity. |
| _cjs/chains/definitions/telcoinTestnet.js | safe | No malicious patterns detected; the file is a simple chain definition for Telcoin testnet with static configuration. |
| _cjs/chains/definitions/telos.js | safe | No malicious patterns detected; the file only exports a static chain configuration object. |
| _cjs/chains/definitions/telosTestnet.js | safe | No malicious patterns detected; the file only defines a chain configuration with static RPC and explorer URLs. |
| _cjs/chains/definitions/tenet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/ternoa.js | safe | No malicious patterns detected; the file only contains a static chain definition with no side effects or suspicious behavior. |
| _cjs/chains/definitions/thaiChain.js | safe | No malicious patterns detected; the file is a standard chain definition with only static configuration data and no active network, filesystem, or process operations. |
| _cjs/chains/definitions/that.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/theta.js | safe | This file only defines a blockchain chain configuration object using a static RPC URL and contains no malicious patterns or dynamic execution. |
| _cjs/chains/definitions/thetaTestnet.js | safe | The file is a static chain definition for Theta Testnet with no malicious patterns or suspicious behavior. |
| _cjs/chains/definitions/thunderCore.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration using standard imports and static values. |
| _cjs/chains/definitions/thunderTestnet.js | safe | No malicious patterns detected; the file only defines a blockchain network configuration using standard chain definition utilities. |
| _cjs/chains/definitions/tiktrixTestnet.js | safe | No malicious patterns detected; the file only defines a blockchain testnet chain configuration with a single RPC URL and block explorer URL. |
| _cjs/chains/definitions/tomb.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/treasure.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/treasureTopaz.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static RPC URLs and contract addresses. |
| _cjs/chains/definitions/tron.js | safe | No malicious patterns detected; the file is a standard chain definition for Tron with no obfuscation, exfiltration, or dynamic execution. |
| _cjs/chains/definitions/ubiq.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/ultra.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static values and no suspicious behavior. |
| _cjs/chains/definitions/ultraTestnet.js | safe | No malicious patterns detected; the file only defines a blockchain testnet configuration using a standard helper function. |
| _cjs/chains/definitions/ultron.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/ultronTestnet.js | safe | This file is a simple, static chain definition (Ultron Testnet) using a standard helper with no executable, obfuscated, network, filesystem, or credential-related logic. |
| _cjs/chains/definitions/unichain.js | safe | No malicious patterns detected; this is a standard chain configuration file for Unichain in the viem library. |
| _cjs/chains/definitions/unichainSepolia.js | safe | No malicious patterns detected; the file only defines a blockchain network configuration object with static, well-known contract addresses. |
| _cjs/chains/definitions/unique.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/uniqueOpal.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with no executable or exfiltration logic. |
| _cjs/chains/definitions/uniqueQuartz.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/unreal.js | safe | This file defines a blockchain chain configuration using the viem library's defineChain utility and contains no malicious patterns. |
| _cjs/chains/definitions/vanar.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/vechain.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/velas.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/viction.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/victionTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/vision.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/visionTestnet.js | safe | This is a standard chain definition file for a testnet with no malicious patterns or suspicious behavior detected. |
| _cjs/chains/definitions/wanchain.js | safe | No malicious patterns detected; the file only defines chain metadata for Wanchain with RPC URLs, block explorer, and multicall3 contract address. |
| _cjs/chains/definitions/wanchainTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/weavevmAlphanet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/wemix.js | safe | This file defines a static blockchain chain configuration with no malicious patterns or suspicious behavior. |
| _cjs/chains/definitions/wemixTestnet.js | safe | The file is a standard chain definition for WEMIX Testnet, containing only static configuration data with no malicious patterns. |
| _cjs/chains/definitions/wmcTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/worldLand.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/worldchain.js | safe | No malicious patterns detected; the file is a standard chain definition configuration for viem. |
| _cjs/chains/definitions/worldchainSepolia.js | safe | No malicious patterns detected; the file only defines chain configuration metadata for World Chain Sepolia. |
| _cjs/chains/definitions/xLayer.js | safe | No malicious patterns detected; the file only defines blockchain chain metadata using standard configuration. |
| _cjs/chains/definitions/xLayerTestnet.js | safe | No malicious patterns detected; the file is a standard blockchain chain definition for X1 Testnet with no exfiltration, credential harvesting, obfuscation, or other security concerns. |
| _cjs/chains/definitions/xai.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static data. |
| _cjs/chains/definitions/xaiTestnet.js | safe | No malicious patterns detected; the file only defines a blockchain testnet configuration object with static values. |
| _cjs/chains/definitions/xdc.js | safe | No malicious patterns detected; the file only defines a blockchain network configuration for XDC. |
| _cjs/chains/definitions/xdcTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/xrOne.js | safe | No malicious patterns detected; the file contains a standard chain definition with no network, filesystem, or code execution concerns. |
| _cjs/chains/definitions/xrSepolia.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static data and a safe import. |
| _cjs/chains/definitions/yooldoVerse.js | safe | The source file only defines an EVM-compatible blockchain chain configuration using a standard library utility, with no malicious patterns detected. |
| _cjs/chains/definitions/yooldoVerseTestnet.js | safe | No malicious patterns detected; the code is a simple chain configuration definition with no network, filesystem, or execution concerns. |
| _cjs/chains/definitions/zenchainTestnet.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration using a standard utility. |
| _cjs/chains/definitions/zeniq.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/zetachain.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/zetachainAthensTestnet.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/zhejiang.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/zilliqa.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/zilliqaTestnet.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with a public RPC URL and block explorer. |
| _cjs/chains/definitions/zircuit.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/zircuitTestnet.js | safe | The file is a standard chain definition configuration for Zircuit Testnet with no malicious patterns. |
| _cjs/chains/definitions/zkFair.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static RPC and explorer URLs. |
| _cjs/chains/definitions/zkFairTestnet.js | safe | No malicious patterns detected; the file is a standard chain definition module with static configuration and no executable or exfiltration behavior. |
| _cjs/chains/definitions/zkLinkNova.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/zkLinkNovaSepoliaTestnet.js | safe | No malicious patterns detected; the file is a standard chain definition module for zkLink Nova Sepolia Testnet. |
| _cjs/chains/definitions/zksync.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/zksyncInMemoryNode.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/zksyncLocalCustomHyperchain.js | safe | This file is a straightforward chain definition for a local ZKsync development network; it contains no execution of external code, network calls beyond localhost defaults, credential access, or obfuscation. |
| _cjs/chains/definitions/zksyncLocalHyperchain.js | safe | No malicious patterns detected; the file only defines a ZKsync local development chain configuration using localhost RPC and explorer URLs. |
| _cjs/chains/definitions/zksyncLocalHyperchainL1.js | safe | No malicious patterns detected; the file only defines a local development chain configuration with localhost RPC URLs. |
| _cjs/chains/definitions/zksyncLocalNode.js | safe | No malicious patterns detected; the file only exports a static ZKsync local node chain configuration with a localhost RPC URL. |
| _cjs/chains/definitions/zksyncSepoliaTestnet.js | safe | This is a standard blockchain chain definition file for ZKsync Sepolia Testnet with no malicious patterns detected. |
| _cjs/chains/definitions/zora.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/zoraSepolia.js | safe | No malicious patterns detected |
| _cjs/chains/definitions/zoraTestnet.js | safe | This file defines a blockchain chain configuration for Zora Goerli Testnet using standard viem chain definitions, with no malicious patterns detected. |
| _cjs/chains/utils.js | safe | This file is a legitimate re-export barrel module from the viem library, with no malicious patterns detected. |
| _cjs/clients/createClient.js | safe | No malicious patterns detected; the code is a legitimate client factory with no exfiltration, obfuscation, process spawning, or install-time behaviors. |
| _cjs/clients/createPublicClient.js | safe | No malicious patterns detected |
| _cjs/clients/createTestClient.js | safe | No malicious patterns detected; the file is a straightforward test client factory that delegates to createClient and test decorators with no external I/O, dynamic execution, or credential access. |
| _cjs/clients/createWalletClient.js | safe | No malicious patterns detected |
| _cjs/clients/decorators/public.js | safe | No malicious patterns detected in this standard viem-style public client decorator file. |
| _cjs/clients/decorators/test.js | safe | No malicious patterns detected |
| _cjs/clients/decorators/wallet.js | safe | No malicious patterns detected; the file is a standard wallet action decorator for a blockchain client library. |
| _cjs/clients/transports/createTransport.js | safe | No malicious patterns detected |
| _cjs/clients/transports/custom.js | safe | No malicious patterns detected |
| _cjs/clients/transports/fallback.js | safe | No malicious patterns detected; this is a legitimate RPC transport fallback and ranking implementation for viem with no data exfiltration, credential harvesting, obfuscation, or process execution. |
| _cjs/clients/transports/http.js | safe | No malicious patterns detected |
| _cjs/clients/transports/ipc.js | safe | No malicious patterns detected; the file provides a legitimate IPC JSON-RPC transport implementation for Ethereum-like clients without credential harvesting, code execution, or data exfiltration. |
| _cjs/clients/transports/webSocket.js | safe | No malicious patterns detected; the code is a standard WebSocket JSON-RPC transport implementation with no data exfiltration, credential harvesting, obfuscation, or suspicious behavior. |
| _cjs/constants/abis.js | safe | No malicious patterns detected; the file only exports standard Ethereum ABI definitions for various token and resolver contracts. |
| _cjs/constants/address.js | safe | No malicious patterns detected; the file only exports well-known Ethereum address constants. |
| _cjs/constants/blob.js | safe | No malicious patterns detected |
| _cjs/constants/bytes.js | safe | No malicious patterns detected |
| _cjs/constants/contract.js | safe | No malicious patterns detected |
| _cjs/constants/contracts.js | safe | The file contains only hard-coded Ethereum contract bytecode constants for deployless calls and signature validation, with no executable logic, network activity, credential access, or other malicious patterns. |
| _cjs/constants/kzg.js | safe | No malicious patterns detected |
| _cjs/constants/number.js | safe | No malicious patterns detected |
| _cjs/constants/solidity.js | safe | Cleared by Jev triage; no further analysis needed |
| _cjs/constants/strings.js | safe | No malicious patterns detected |
| _cjs/constants/unit.js | safe | No malicious patterns detected |
| _cjs/ens/index.js | safe | No malicious patterns detected |
| _cjs/errors/abi.js | safe | No malicious patterns detected; the file contains only standard error class definitions for ABI handling in the viem library. |
| _cjs/errors/account.js | safe | No malicious patterns detected |
| _cjs/errors/address.js | safe | No malicious patterns detected; the file defines a simple error class for invalid Ethereum addresses. |
| _cjs/errors/base.js | safe | Cleared by Jev triage; no further analysis needed |
| _cjs/errors/blob.js | safe | No malicious patterns detected |
| _cjs/errors/block.js | safe | No malicious patterns detected; the file only defines a simple custom error class extending BaseError. |
| _cjs/errors/ccip.js | safe | No malicious patterns detected; the file only defines error classes for CCIP offchain lookup handling without any external calls, code execution, or credential access. |
| _cjs/errors/chain.js | safe | No malicious patterns detected; the file only defines custom error classes for chain-related validation. |
| _cjs/errors/contract.js | safe | No malicious patterns detected in this error-handling module for a blockchain contract library. |
| _cjs/errors/cursor.js | safe | Cleared by Jev triage; no further analysis needed |
| _cjs/errors/data.js | safe | Cleared by Jev triage; no further analysis needed |
| _cjs/errors/eip712.js | safe | Cleared by Jev triage; no further analysis needed |
| _cjs/errors/encoding.js | safe | Cleared by Jev triage; no further analysis needed |
| _cjs/errors/ens.js | safe | This file only defines custom error classes for ENS avatar handling and contains no malicious patterns such as data exfiltration, credential harvesting, dynamic code execution, or network activity. |
| _cjs/errors/estimateGas.js | safe | No malicious patterns detected; this is a benign error-formatting class for Ethereum gas estimation errors. |
| _cjs/errors/fee.js | safe | No malicious patterns detected; the file only defines custom error classes for fee-related validation in a cryptocurrency library. |
| _cjs/errors/log.js | safe | Cleared by Jev triage; no further analysis needed |
| _cjs/errors/node.js | safe | No malicious patterns detected |
| _cjs/errors/request.js | safe | This file only defines error classes for HTTP, WebSocket, RPC, socket, and timeout failures with no malicious patterns such as data exfiltration, credential harvesting, obfuscation, or command execution. |
| _cjs/errors/rpc.js | safe | No malicious patterns detected; the file only defines standard JSON-RPC error classes without any network, filesystem, process, or dynamic execution behavior. |
| _cjs/errors/siwe.js | safe | Cleared by Jev triage; no further analysis needed |
| _cjs/errors/stateOverride.js | safe | Cleared by Jev triage; no further analysis needed |
| _cjs/errors/transaction.js | safe | This file contains only error class definitions and a pretty-printing utility for transaction-related errors, with no malicious patterns such as data exfiltration, credential harvesting, dynamic code execution, or network activity. |
| _cjs/errors/transport.js | safe | No malicious patterns detected |
| _cjs/errors/typedData.js | safe | Cleared by Jev triage; no further analysis needed |
| _cjs/errors/unit.js | safe | Cleared by Jev triage; no further analysis needed |
| _cjs/errors/utils.js | safe | No malicious patterns detected |
| _cjs/errors/version.js | safe | No malicious patterns detected; the file only exports a static version string. |
| _cjs/experimental/eip5792/actions/getCallsStatus.js | safe | No malicious patterns detected; the code is a straightforward EIP-5792 wallet call status formatter with no network, filesystem, or execution risks. |
| _cjs/experimental/eip5792/actions/getCapabilities.js | safe | No malicious patterns detected; the code is a standard EIP-5792 capability fetcher with no data exfiltration, credential harvesting, obfuscation, or unsafe dynamic execution. |
| _cjs/experimental/eip5792/actions/sendCalls.js | safe | No malicious patterns detected; the code is a standard EIP-5792 wallet_sendCalls implementation that encodes user-provided calls and sends them via the client's RPC request. |
| _cjs/experimental/eip5792/actions/showCallsStatus.js | safe | No malicious patterns detected; the file only wraps a wallet_showCallsStatus RPC call with no exfiltration, obfuscation, or system-level operations. |
| _cjs/experimental/eip5792/actions/writeContracts.js | safe | No malicious patterns detected |
| _cjs/experimental/eip5792/decorators/eip5792.js | safe | No malicious patterns detected in this EIP-5792 decorator module; it only re-exports wallet action helpers. |
| _cjs/experimental/eip7702/actions/prepareAuthorization.js | safe | No malicious patterns detected; the code is a standard EIP-7702 authorization preparation utility with no exfiltration, obfuscation, or dynamic execution. |
| _cjs/experimental/eip7702/actions/signAuthorization.js | safe | No malicious patterns detected; the code is a standard authorization signing function with no data exfiltration, credential harvesting, obfuscation, or other suspicious behavior. |
| _cjs/experimental/eip7702/decorators/eip7702.js | safe | No malicious patterns detected; the file only wires up EIP-7702 authorization actions to a client without any exfiltration, code execution, or lifecycle hooks. |
| _cjs/experimental/eip7702/types/authorization.js | safe | No malicious patterns detected |
| _cjs/experimental/eip7702/types/rpc.js | safe | No malicious patterns detected |
| _cjs/experimental/eip7702/utils/hashAuthorization.js | safe | No malicious patterns detected |
| _cjs/experimental/eip7702/utils/recoverAuthorizationAddress.js | safe | No malicious patterns detected |
| _cjs/experimental/eip7702/utils/serializeAuthorizationList.js | safe | No malicious patterns detected; the file is a straightforward serialization utility for EIP-7702 authorization lists with no network, filesystem, process, or dynamic code execution concerns. |
| _cjs/experimental/eip7702/utils/verifyAuthorization.js | safe | No malicious patterns detected |
| _cjs/experimental/erc7715/actions/grantPermissions.js | safe | No malicious patterns detected; the code is a legitimate wallet permission request formatter with no exfiltration, obfuscation, or dangerous operations. |
| _cjs/experimental/erc7715/decorators/erc7715.js | safe | No malicious patterns detected |
| _cjs/experimental/erc7715/types/permission.js | safe | No malicious patterns detected |
| _cjs/experimental/erc7715/types/policy.js | safe | No malicious patterns detected; the file contains only standard CommonJS export boilerplate and a source map reference with no executable or suspicious code. |
| _cjs/experimental/erc7715/types/signer.js | safe | The file contains only standard CommonJS module boilerplate with a source map reference and no executable logic, imports, network calls, or suspicious patterns. |
| _cjs/experimental/erc7739/actions/signMessage.js | safe | No malicious patterns detected; the code is a standard ERC-7739 message signing utility with no external data exfiltration, credential harvesting, obfuscation, or process execution. |
| _cjs/experimental/erc7739/actions/signTypedData.js | safe | No malicious patterns detected; the code implements ERC-7739 typed data signing logic without exfiltration, obfuscation, or suspicious behavior. |
| _cjs/experimental/erc7739/decorators/erc7739.js | safe | No malicious patterns detected; the code is a simple decorator factory for signing messages and typed data with no network, filesystem, or dynamic execution behavior. |
| _cjs/experimental/erc7739/index.js | safe | No malicious patterns detected; this is a standard re-export module for ERC-7739 signature utilities. |
| _cjs/experimental/erc7739/types.js | safe | No malicious patterns detected |
| _cjs/experimental/erc7739/utils/hashMessage.js | safe | No malicious patterns detected |
| _cjs/experimental/erc7739/utils/hashTypedData.js | safe | No malicious patterns detected; the file contains a pure function that delegates hashing to an internal utility with no network, filesystem, process, or dynamic code execution behavior. |
| _cjs/experimental/erc7739/utils/wrapTypedDataSignature.js | safe | No malicious patterns detected; the code is a legitimate utility for wrapping typed data signatures with no suspicious network, filesystem, or execution behavior. |
| _cjs/experimental/erc7821/actions/execute.js | safe | No malicious patterns detected; the code is a standard ERC-7821 execute action wrapper for sending transactions. |
| _cjs/experimental/erc7821/actions/executeBatches.js | safe | The code implements a standard ERC-7821 batch execution function without any malicious patterns; it only uses internal library dependencies and does not exfiltrate data, execute dynamic code, or manipulate the file system. |
| _cjs/experimental/erc7821/actions/supportsExecutionMode.js | safe | No malicious patterns detected; the code is a legitimate ERC-7821 utility that reads contract state with caching and handles errors gracefully. |
| _cjs/experimental/erc7821/constants.js | safe | No malicious patterns detected |
| _cjs/experimental/erc7821/decorators/erc7821.js | safe | No malicious patterns detected; the file is a straightforward decorator that returns action functions and contains no network, filesystem, process execution, or obfuscated code. |
| _cjs/experimental/erc7821/errors.js | safe | Cleared by Jev triage; no further analysis needed |
| _cjs/experimental/erc7821/index.js | safe | This is a standard barrel/index file that only re-exports modules from local relative paths with no executable logic, network activity, or malicious patterns. |
| _cjs/experimental/erc7821/utils/encodeCalls.js | safe | No malicious patterns detected; the code is a straightforward ABI encoding utility for ERC-7821 calls with no exfiltration, dynamic execution, or filesystem/network access. |
| _cjs/experimental/erc7821/utils/encodeExecuteBatchesData.js | safe | No malicious patterns detected; the code only encodes Ethereum function call data using standard ABI encoding libraries. |
| _cjs/experimental/erc7821/utils/encodeExecuteData.js | safe | No malicious patterns detected |
| _cjs/experimental/erc7821/utils/getExecuteError.js | safe | No malicious patterns detected; the code is a legitimate utility for parsing Ethereum/EVM transaction execution errors. |
| _cjs/experimental/index.js | safe | No malicious patterns detected |
| _cjs/index.js | safe | No malicious patterns detected; this is a standard re-export index for the viem Ethereum library. |
| _cjs/linea/actions/estimateGas.js | safe | No malicious patterns detected; the code is a standard viem/linea estimateGas action implementation with no exfiltration, obfuscation, or privileged operations. |
| _cjs/linea/chainConfig.js | safe | No malicious patterns detected; the code is a straightforward fee estimation configuration with no network, filesystem, or process execution concerns. |
| _cjs/linea/chains.js | safe | No malicious patterns detected |
| _cjs/linea/index.js | safe | No malicious patterns detected; the file only re-exports named modules and contains no dynamic code execution or network activity. |
| _cjs/linea/types/rpc.js | safe | No malicious patterns detected |
| _cjs/node/index.js | safe | No malicious patterns detected |
| _cjs/node/trustedSetups.js | safe | No malicious patterns detected |
| _cjs/nonce/index.js | safe | No malicious patterns detected; the file is a simple re-export module with no suspicious or dynamic behavior. |
| _cjs/op-stack/abis.js | safe | This file contains only static Ethereum contract ABI definitions with no executable code, network activity, or malicious patterns. |
| _cjs/op-stack/actions/buildDepositTransaction.js | safe | No malicious patterns detected; the code is a normal transaction builder for OP Stack deposits. |
| _cjs/op-stack/actions/buildInitiateWithdrawal.js | safe | No malicious patterns detected; the code is a straightforward utility for building withdrawal transaction requests within a wallet SDK. |
| _cjs/op-stack/actions/buildProveWithdrawal.js | safe | No malicious patterns detected |
| _cjs/op-stack/actions/depositTransaction.js | safe | No malicious patterns detected |
| _cjs/op-stack/actions/estimateContractL1Fee.js | safe | No malicious patterns detected |
| _cjs/op-stack/actions/estimateContractL1Gas.js | safe | No malicious patterns detected; the code is a legitimate utility for estimating L1 gas for contract calls on the OP Stack. |
| _cjs/op-stack/actions/estimateContractTotalFee.js | safe | No malicious patterns detected |
| _cjs/op-stack/actions/estimateContractTotalGas.js | safe | The file contains a standard ethers.js-style utility function for estimating contract gas with no malicious patterns or security concerns. |
| _cjs/op-stack/actions/estimateDepositTransactionGas.js | safe | No malicious patterns detected; the code performs a standard gas estimation for a deposit transaction using imported helpers and constants. |
| _cjs/op-stack/actions/estimateFinalizeWithdrawalGas.js | safe | No malicious patterns detected; the code is a standard utility for estimating gas costs in an OP Stack withdrawal flow. |
| _cjs/op-stack/actions/estimateInitiateWithdrawalGas.js | safe | No malicious patterns detected; the module simply wraps a contract gas estimation call with no network exfiltration, credential access, dynamic execution, or filesystem manipulation. |
| _cjs/op-stack/actions/estimateL1Fee.js | safe | No malicious patterns detected; the code is a standard viem library function for estimating L1 fees. |
| _cjs/op-stack/actions/estimateL1Gas.js | safe | No malicious patterns detected; the file implements a standard viem library action for estimating L1 gas via internal imports and contract calls. |
| _cjs/op-stack/actions/estimateProveWithdrawalGas.js | safe | No malicious patterns detected; the code is a standard utility function for estimating gas on a blockchain transaction. |
| _cjs/op-stack/actions/estimateTotalFee.js | safe | No malicious patterns detected; the code is a legitimate transaction fee estimation utility using standard imports and asynchronous operations. |
| _cjs/op-stack/actions/estimateTotalGas.js | safe | No malicious patterns detected |
| _cjs/op-stack/actions/finalizeWithdrawal.js | safe | No malicious patterns detected in the provided JavaScript file. |
| _cjs/op-stack/actions/getGame.js | safe | No malicious patterns detected |
| _cjs/op-stack/actions/getGames.js | safe | No malicious patterns detected in the getGames function; it performs deterministic Ethereum smart contract calls and data filtering with no network, filesystem, or code execution risks. |
| _cjs/op-stack/actions/getL1BaseFee.js | safe | No malicious patterns detected |
| _cjs/op-stack/actions/getL2Output.js | safe | No malicious patterns detected; the code is a standard library function for reading L2 output data from a blockchain contract. |
| _cjs/op-stack/actions/getPortalVersion.js | safe | No malicious patterns detected; the code is a straightforward contract interaction utility with caching. |
| _cjs/op-stack/actions/getTimeToFinalize.js | safe | No malicious patterns detected; the code is a legitimate OP Stack utility for calculating withdrawal finalization time and only performs read-only contract calls. |
| _cjs/op-stack/actions/getTimeToNextGame.js | safe | No malicious patterns detected; the code only performs local calculations on provided game data without network, file system, process, or dynamic code execution activities. |
| _cjs/op-stack/actions/getTimeToNextL2Output.js | safe | No malicious patterns detected; the code is a standard library function for reading blockchain contract data with no exfiltration, dynamic execution, or filesystem/process manipulation. |
| _cjs/op-stack/actions/getTimeToProve.js | safe | No malicious patterns detected |
| _cjs/op-stack/actions/getWithdrawalStatus.js | safe | No malicious patterns detected |
| _cjs/op-stack/actions/initiateWithdrawal.js | safe | No malicious patterns detected |
| _cjs/op-stack/actions/proveWithdrawal.js | safe | No malicious patterns detected; the code is a standard library function for proving withdrawals by calling a blockchain smart contract. |
| _cjs/op-stack/actions/waitForNextGame.js | safe | No malicious patterns detected; the code is a standard polling utility for blockchain game state with no exfiltration, obfuscation, or process execution. |
| _cjs/op-stack/actions/waitForNextL2Output.js | safe | No malicious patterns detected; the code is a standard polling utility for retrieving L2 outputs in an op-stack client library. |
| _cjs/op-stack/actions/waitToFinalize.js | safe | No malicious patterns detected |
| _cjs/op-stack/actions/waitToProve.js | safe | The code is a standard utility for waiting on blockchain withdrawal proofs with no suspicious or malicious patterns detected. |
| _cjs/op-stack/chainConfig.js | safe | No malicious patterns detected |
| _cjs/op-stack/chains.js | safe | No malicious patterns detected |
| _cjs/op-stack/contracts.js | safe | No malicious patterns detected |
| _cjs/op-stack/decorators/publicL1.js | safe | No malicious patterns detected; the file is a clean decorator module that wires up public L1 actions via static imports and closures. |
| _cjs/op-stack/decorators/publicL2.js | safe | No malicious patterns detected; the file only re-exports legitimate OP Stack L2 public actions as a decorator, with no network, filesystem, process, or obfuscated code. |
| _cjs/op-stack/decorators/walletL1.js | safe | No malicious patterns detected |
| _cjs/op-stack/decorators/walletL2.js | safe | No malicious patterns detected in the walletL2.js decorator file. |
| _cjs/op-stack/errors/withdrawal.js | safe | The file only defines two custom error classes extending a base error, with no network, filesystem, process, or dynamic code execution behavior. |
| _cjs/op-stack/formatters.js | safe | No malicious patterns detected |
| _cjs/op-stack/index.js | safe | No malicious patterns detected; the file is a standard TypeScript-generated CommonJS barrel export for the op-stack package. |
| _cjs/op-stack/parsers.js | safe | No malicious patterns detected; the code performs standard transaction parsing and validation without any suspicious activities. |
| _cjs/op-stack/serializers.js | safe | No malicious patterns detected; the code is a standard transaction serializer for OP Stack deposits. |
| _cjs/op-stack/types/block.js | safe | No malicious patterns detected |
| _cjs/op-stack/types/chain.js | safe | No malicious patterns detected; the file only contains standard CommonJS module boilerplate and a source map reference. |
| _cjs/op-stack/types/contract.js | safe | No malicious patterns detected |
| _cjs/op-stack/types/deposit.js | safe | No malicious patterns detected |
| _cjs/op-stack/types/transaction.js | safe | No malicious patterns detected |
| _cjs/op-stack/types/withdrawal.js | safe | No malicious patterns detected; the file contains only a CommonJS export marker and a source map reference. |
| _cjs/op-stack/utils/extractTransactionDepositedLogs.js | safe | No malicious patterns detected |
| _cjs/op-stack/utils/extractWithdrawalMessageLogs.js | safe | No malicious patterns detected; the file only imports a local ABI parser and ABI definition to extract withdrawal event logs. |
| _cjs/op-stack/utils/getL2TransactionHash.js | safe | No malicious patterns detected in the analyzed file. |
| _cjs/op-stack/utils/getL2TransactionHashes.js | safe | No malicious patterns detected; the file contains straightforward helper functions that map transaction logs to L2 transaction hashes. |
| _cjs/op-stack/utils/getSourceHash.js | safe | The code implements a pure cryptographic hash function with no network, filesystem, process, or dynamic execution activity. |
| _cjs/op-stack/utils/getWithdrawalHashStorageSlot.js | safe | No malicious patterns detected; the file contains only a pure cryptographic utility for computing a withdrawal hash storage slot. |
| _cjs/op-stack/utils/getWithdrawals.js | safe | No malicious patterns detected |
| _cjs/op-stack/utils/opaqueDataToDepositData.js | safe | No malicious patterns detected; the code is a straightforward utility for parsing opaque deposit data and performs no network, filesystem, process, or dynamic code operations. |
| _cjs/siwe/index.js | safe | No malicious patterns detected; this is a standard barrel file re-exporting SIWE (Sign-In with Ethereum) utility functions using CommonJS interop patterns. |
| _cjs/types/account.js | safe | No malicious patterns detected in the provided file. |
| _cjs/types/block.js | safe | No malicious patterns detected |
| _cjs/types/calls.js | safe | No malicious patterns detected in this TypeScript declaration stub file. |
| _cjs/types/chain.js | safe | No malicious patterns detected; the file only contains standard CommonJS module boilerplate and a source map reference. |
| _cjs/types/contract.js | safe | No malicious patterns detected |
| _cjs/types/eip1193.js | safe | No malicious patterns detected in the EIP-1193 ProviderRpcError type definition |
| _cjs/types/eip4844.js | safe | No malicious patterns detected |
| _cjs/types/ens.js | safe | No malicious patterns detected |
| _cjs/types/fee.js | safe | No malicious patterns detected |
| _cjs/types/filter.js | safe | No malicious patterns detected |
| _cjs/types/kzg.js | safe | No malicious patterns detected |
| _cjs/types/log.js | safe | No malicious patterns detected |
| _cjs/types/misc.js | safe | No malicious patterns detected |
| _cjs/types/multicall.js | safe | No malicious patterns detected |
| _cjs/types/proof.js | safe | No malicious patterns detected |
| _cjs/types/rpc.js | safe | No malicious patterns detected |
| _cjs/types/stateOverride.js | safe | No malicious patterns detected |
| _cjs/types/transaction.js | safe | No malicious patterns detected |
| _cjs/types/transport.js | safe | No malicious patterns detected; the file only contains a TypeScript-generated CommonJS module marker and a source map comment. |
| _cjs/types/typedData.js | safe | No malicious patterns detected |
| _cjs/types/utils.js | safe | The file contains only a CommonJS module export marker and a source map comment; no executable or malicious code is present. |
| _cjs/types/window.js | safe | No malicious patterns detected |
| _cjs/types/withdrawal.js | safe | No malicious patterns detected; the file contains only a CommonJS export marker and a source map reference. |
| _cjs/utils/abi/decodeAbiParameters.js | safe | No malicious patterns detected in the ABI decoding utility. |
| _cjs/utils/abi/decodeDeployData.js | safe | The file contains legitimate ABI decoding logic with no malicious patterns such as data exfiltration, credential harvesting, obfuscation, or dynamic code execution. |
| _cjs/utils/abi/decodeErrorResult.js | safe | No malicious patterns detected; the file contains only standard ABI error-decoding logic with no network, filesystem, process, or dynamic execution behavior. |
| _cjs/utils/abi/decodeEventLog.js | safe | No malicious patterns detected; the code is a standard Ethereum ABI event log decoder with no exfiltration, credential harvesting, obfuscation, or dynamic execution. |
| _cjs/utils/abi/decodeFunctionData.js | safe | No malicious patterns detected |
| _cjs/utils/abi/decodeFunctionResult.js | safe | No malicious patterns detected |
| _cjs/utils/abi/encodeAbiParameters.js | safe | No malicious patterns detected; the code is a standard ABI parameter encoder with no network, filesystem, process, or dynamic execution behavior. |
| _cjs/utils/abi/encodeDeployData.js | safe | No malicious patterns detected |
| _cjs/utils/abi/encodeErrorResult.js | safe | No malicious patterns detected; the code is a straightforward ABI error encoding utility from the viem/abitype ecosystem. |
| _cjs/utils/abi/encodeEventTopics.js | safe | No malicious patterns detected |
| _cjs/utils/abi/encodeFunctionData.js | safe | No malicious patterns detected in the ABI encoding utility code. |
| _cjs/utils/abi/encodeFunctionResult.js | safe | No malicious patterns detected |
| _cjs/utils/abi/encodePacked.js | safe | Cleared by Jev triage; no further analysis needed |
| _cjs/utils/abi/formatAbiItem.js | safe | No malicious patterns detected |
| _cjs/utils/abi/formatAbiItemWithArgs.js | safe | The file is a pure utility function that formats ABI items with arguments and contains no network, filesystem, process, or dynamic execution behavior. |
| _cjs/utils/abi/getAbiItem.js | safe | No malicious patterns detected in the provided ABI utility code. |
| _cjs/utils/abi/parseEventLogs.js | safe | No malicious patterns detected; the code is a legitimate utility for parsing Ethereum event logs with no network, filesystem, process execution, or obfuscation concerns. |
| _cjs/utils/abi/prepareEncodeFunctionData.js | safe | No malicious patterns detected |
| _cjs/utils/address/getAddress.js | safe | No malicious patterns detected |
| _cjs/utils/address/getContractAddress.js | safe | No malicious patterns detected; the code implements standard Ethereum contract address derivation functions using only local cryptographic utilities. |
| _cjs/utils/address/isAddress.js | safe | No malicious patterns detected in the address validation utility. |
| _cjs/utils/address/isAddressEqual.js | safe | No malicious patterns detected |
| _cjs/utils/blob/blobsToCommitments.js | safe | No malicious patterns detected |
| _cjs/utils/blob/blobsToProofs.js | safe | No malicious patterns detected; the code is a straightforward KZG blob-to-proof conversion utility from a known Ethereum library. |
| _cjs/utils/blob/commitmentToVersionedHash.js | safe | No malicious patterns detected; the code performs deterministic hashing and hex conversion with no network, filesystem, process, or dynamic execution behavior. |
| _cjs/utils/blob/commitmentsToVersionedHashes.js | safe | No malicious patterns detected |
| _cjs/utils/blob/fromBlobs.js | safe | No malicious patterns detected |
| _cjs/utils/blob/sidecarsToVersionedHashes.js | safe | No malicious patterns detected |
| _cjs/utils/blob/toBlobSidecars.js | safe | No malicious patterns detected |
| _cjs/utils/blob/toBlobs.js | safe | This is a benign utility module for converting data to blobs used in Ethereum EIP-4844 transactions, with no malicious patterns detected. |
| _cjs/utils/buildRequest.js | safe | No malicious patterns detected; the code implements standard JSON-RPC request building with retry and deduplication logic, and contains no data exfiltration, credential harvesting, obfuscation, or unauthorized system access. |
| _cjs/utils/chain/assertCurrentChain.js | safe | No malicious patterns detected; the code is a simple validation utility that throws errors on chain mismatch and performs no external I/O or dynamic execution. |
| _cjs/utils/chain/defineChain.js | safe | No malicious patterns detected; the code is a simple utility function that merges default properties into a chain object without any suspicious behavior. |
| _cjs/utils/chain/extractChain.js | safe | No malicious patterns detected; the file contains a simple utility function that searches a provided array for a matching chain ID with no network, filesystem, process, or dynamic code execution activity. |
| _cjs/utils/chain/getChainContractAddress.js | safe | No malicious patterns detected |
| _cjs/utils/cursor.js | safe | No malicious patterns detected |
| _cjs/utils/data/concat.js | safe | No malicious patterns detected |
| _cjs/utils/data/isBytes.js | safe | The file contains a simple type-checking utility with no malicious patterns, network activity, or dynamic execution. |
| _cjs/utils/data/isHex.js | safe | No malicious patterns detected |
| _cjs/utils/data/pad.js | safe | No malicious patterns detected; the file only contains pure utility functions for padding hex/byte data with no network, filesystem, process, or dynamic code execution activity. |
| _cjs/utils/data/size.js | safe | No malicious patterns detected; the code is a simple size calculation utility with no network, filesystem, process, or dynamic execution activity. |
| _cjs/utils/data/slice.js | safe | No malicious patterns detected; the code performs standard byte/hex slicing with bounds checking and does not exhibit any exfiltration, obfuscation, or process execution behaviors. |
| _cjs/utils/data/trim.js | safe | No malicious patterns detected |
| _cjs/utils/encoding/fromBytes.js | safe | Cleared by Jev triage; no further analysis needed |
| _cjs/utils/encoding/fromHex.js | safe | No malicious patterns detected |
| _cjs/utils/encoding/toBytes.js | safe | No malicious patterns detected; the module contains only standard byte conversion utilities with no network, filesystem, process, or dynamic execution behavior. |
| _cjs/utils/encoding/toHex.js | safe | No malicious patterns detected |
| _cjs/utils/encoding/toRlp.js | safe | No malicious patterns detected; the code is a straightforward RLP encoding utility with no network, filesystem, process, or dynamic execution behavior. |
| _cjs/utils/ens/avatar/parseAvatarRecord.js | safe | No malicious patterns detected; the code is a legitimate avatar record parser with no data exfiltration, credential harvesting, dynamic execution, or other suspicious behavior. |
| _cjs/utils/ens/encodeLabelhash.js | safe | No malicious patterns detected |
| _cjs/utils/ens/encodedLabelToLabelhash.js | safe | The code is a simple utility function for converting encoded ENS labels to labelhashes, with no malicious patterns detected. |
| _cjs/utils/ens/errors.js | safe | No malicious patterns detected; the code only performs error classification for ENS universal resolver errors using local imports. |
| _cjs/utils/ens/labelhash.js | safe | No malicious patterns detected; the code implements a standard ENS labelhash utility using keccak256 hashing. |
| _cjs/utils/ens/namehash.js | safe | No malicious patterns detected; the code only computes ENS namehash values using standard cryptographic utilities. |
| _cjs/utils/ens/normalize.js | safe | The file is a thin wrapper around ox/Ens.normalize with no malicious patterns, network activity, credential access, or dynamic execution. |
| _cjs/utils/ens/packetToBytes.js | safe | No malicious patterns detected |
| _cjs/utils/errors/getCallError.js | safe | No malicious patterns detected |
| _cjs/utils/errors/getContractError.js | safe | No malicious patterns detected in this error-handling utility module; it only maps and normalizes contract errors without network, filesystem, or code-execution behavior. |
| _cjs/utils/errors/getEstimateGasError.js | safe | No malicious patterns detected |
| _cjs/utils/errors/getNodeError.js | safe | No malicious patterns detected |
| _cjs/utils/errors/getTransactionError.js | safe | No malicious patterns detected; this is a straightforward error-handling utility that wraps errors without any risky behavior. |
| _cjs/utils/filters/createFilterRequestScope.js | safe | No malicious patterns detected |
| _cjs/utils/formatters/block.js | safe | No malicious patterns detected; the code is a straightforward data formatter for Ethereum block objects with no network, filesystem, process, or dynamic execution activity. |
| _cjs/utils/formatters/extract.js | safe | No malicious patterns detected |
| _cjs/utils/formatters/feeHistory.js | safe | Cleared by Jev triage; no further analysis needed |
| _cjs/utils/formatters/formatter.js | safe | No malicious patterns detected |
| _cjs/utils/formatters/log.js | safe | No malicious patterns detected |
| _cjs/utils/formatters/proof.js | safe | No malicious patterns detected |
| _cjs/utils/formatters/transaction.js | safe | No malicious patterns detected; the code is a standard Ethereum transaction formatter with no network, filesystem, process, or dynamic execution activity. |
| _cjs/utils/formatters/transactionReceipt.js | safe | No malicious patterns detected; the code only formats transaction receipt data using standard BigInt conversions and number parsing. |
| _cjs/utils/formatters/transactionRequest.js | safe | No malicious patterns detected; the code is a standard Ethereum transaction request formatter with no external calls, process execution, or credential access. |
| _cjs/utils/getAction.js | safe | No malicious patterns detected; the code is a straightforward utility for resolving client action methods. |
| _cjs/utils/hash/hashSignature.js | safe | No malicious patterns detected |
| _cjs/utils/hash/isHash.js | safe | No malicious patterns detected |
| _cjs/utils/hash/keccak256.js | safe | No malicious patterns detected; the file is a straightforward keccak256 hashing utility using @noble/hashes with no network, filesystem, process, or dynamic execution behavior. |
| _cjs/utils/hash/normalizeSignature.js | safe | No malicious patterns detected; the code is a pure string normalization utility with no network, filesystem, process, or dynamic execution behavior. |
| _cjs/utils/hash/ripemd160.js | safe | No malicious patterns detected |
| _cjs/utils/hash/sha256.js | safe | No malicious patterns detected |
| _cjs/utils/hash/toEventHash.js | safe | No malicious patterns detected |
| _cjs/utils/hash/toEventSelector.js | safe | No malicious patterns detected |
| _cjs/utils/hash/toEventSignature.js | safe | No malicious patterns detected |
| _cjs/utils/hash/toFunctionHash.js | safe | No malicious patterns detected |
| _cjs/utils/hash/toFunctionSelector.js | safe | The file contains only a simple pure function that computes a 4-byte function selector using internal utility imports, with no malicious patterns, network activity, file system access, or dynamic code execution. |
| _cjs/utils/hash/toFunctionSignature.js | safe | No malicious patterns detected; the file is a simple re-export module for a utility function. |
| _cjs/utils/hash/toSignature.js | safe | No malicious patterns detected |
| _cjs/utils/hash/toSignatureHash.js | safe | No malicious patterns detected |
| _cjs/utils/index.js | safe | This file is a standard barrel export module for the viem Ethereum library, re-exporting utility functions with no malicious patterns, network calls, or obfuscated code. |
| _cjs/utils/kzg/defineKzg.js | safe | No malicious patterns detected; the file is a simple utility that returns an object containing two KZG-related function references. |
| _cjs/utils/kzg/setupKzg.js | safe | No malicious patterns detected; the code only loads a trusted setup file and defines KZG, which is typical for cryptographic libraries. |
| _cjs/utils/lru.js | safe | No malicious patterns detected |
| _cjs/utils/nonceManager.js | safe | No malicious patterns detected; the code implements a local nonce manager for Ethereum transactions with no network, filesystem, or process activity. |
| _cjs/utils/observe.js | safe | No malicious patterns detected; the code is a benign observer/listener utility with no exfiltration, obfuscation, or external interaction. |
| _cjs/utils/poll.js | safe | No malicious patterns detected; this is a standard, non-malicious polling utility. |
| _cjs/utils/promise/createBatchScheduler.js | safe | No malicious patterns detected; the code implements a benign batch scheduler using in-memory caching and setTimeout without any network, filesystem, or process manipulation. |
| _cjs/utils/promise/withCache.js | safe | No malicious patterns detected; the file implements a standard in-memory promise/response caching utility with no external I/O, code execution, or credential access. |
| _cjs/utils/promise/withDedupe.js | safe | No malicious patterns detected; the code implements a simple promise deduplication cache using an LRU map. |
| _cjs/utils/promise/withResolvers.js | safe | No malicious patterns detected |
| _cjs/utils/promise/withRetry.js | safe | No malicious patterns detected |
| _cjs/utils/promise/withTimeout.js | safe | No malicious patterns detected; the code is a standard timeout utility with no network, file, process, or dynamic execution behavior. |
| _cjs/utils/regex.js | safe | No malicious patterns detected; the file only exports static regular expressions for parsing ABI type strings. |
| _cjs/utils/rpc/compat.js | safe | The code is a clean RPC compatibility wrapper with no malicious patterns detected. |
| _cjs/utils/rpc/http.js | safe | No malicious patterns detected; the code implements a standard HTTP RPC client with proper error handling and timeout support. |
| _cjs/utils/rpc/id.js | safe | No malicious patterns detected |
| _cjs/utils/rpc/socket.js | safe | No malicious patterns detected; the code implements a WebSocket JSON-RPC client with caching, reconnect, and keepalive logic without exfiltration, credential harvesting, obfuscation, or process spawning. |
| _cjs/utils/rpc/webSocket.js | safe | No malicious patterns detected; the code is a standard WebSocket RPC client implementation with no exfiltration, credential harvesting, obfuscation, or other suspicious activity. |
| _cjs/utils/signature/compactSignatureToSignature.js | safe | No malicious patterns detected; the code is a straightforward cryptographic signature format conversion utility. |
| _cjs/utils/signature/hashMessage.js | safe | No malicious patterns detected; the file simply computes a Keccak-256 hash over an Ethereum-prefixed message using standard internal utilities. |
| _cjs/utils/signature/hashTypedData.js | safe | The code implements EIP-712 typed data hashing using standard cryptographic primitives with no malicious patterns detected. |
| _cjs/utils/signature/isErc6492Signature.js | safe | No malicious patterns detected |
| _cjs/utils/signature/parseCompactSignature.js | safe | No malicious patterns detected |
| _cjs/utils/signature/parseErc6492Signature.js | safe | The code is a simple, stateless utility for parsing ERC-6492 signatures with no malicious patterns, network access, filesystem manipulation, or dynamic execution. |
| _cjs/utils/signature/parseSignature.js | safe | No malicious patterns detected; the code is a straightforward cryptographic signature parser using the @noble/curves library with no network, filesystem, or dynamic execution concerns. |
| _cjs/utils/signature/recoverAddress.js | safe | No malicious patterns detected |
| _cjs/utils/signature/recoverMessageAddress.js | safe | No malicious patterns detected; the module is a straightforward cryptographic address recovery utility with no network, filesystem, or dynamic execution behavior. |
| _cjs/utils/signature/recoverPublicKey.js | safe | No malicious patterns detected; the code is a standard cryptographic utility for recovering public keys from signatures using @noble/curves. |
| _cjs/utils/signature/recoverTransactionAddress.js | safe | The file implements a standard cryptographic utility for recovering a transaction address from a serialized transaction and signature, with no malicious patterns such as data exfiltration, credential harvesting, obfuscation, or network activity. |
| _cjs/utils/signature/recoverTypedDataAddress.js | safe | This file implements a straightforward cryptographic signature recovery utility with no network, filesystem, process, or dynamic code execution activity. |
| _cjs/utils/signature/serializeCompactSignature.js | safe | No malicious patterns detected |
| _cjs/utils/signature/serializeErc6492Signature.js | safe | No malicious patterns detected; the code performs deterministic ERC-6492 signature serialization using only local encoding utilities. |
| _cjs/utils/signature/serializeSignature.js | safe | No malicious patterns detected |
| _cjs/utils/signature/signatureToCompactSignature.js | safe | No malicious patterns detected; the code is a pure cryptographic utility for converting ECDSA signatures to compact form. |
| _cjs/utils/signature/toPrefixedMessage.js | safe | No malicious patterns detected; the code is a straightforward Ethereum message prefixing utility with no network, filesystem, process, or obfuscation concerns. |
| _cjs/utils/signature/verifyHash.js | safe | No malicious patterns detected |
| _cjs/utils/signature/verifyMessage.js | safe | No malicious patterns detected |
| _cjs/utils/signature/verifyTypedData.js | safe | No malicious patterns detected; the file implements a standard Ethereum/EIP-712 typed data signature verification utility with no network, filesystem, process, or dynamic code execution behavior. |
| _cjs/utils/siwe/createSiweMessage.js | safe | No malicious patterns detected; the code constructs a SIWE message with input validation and no network, filesystem, process, or dynamic execution behavior. |
| _cjs/utils/siwe/generateSiweNonce.js | safe | No malicious patterns detected; the file simply generates a 96-character nonce for SIWE using an internal uid utility. |
| _cjs/utils/siwe/parseSiweMessage.js | safe | The file contains a pure SIWE message parser using only string/regex operations with no network, filesystem, process, or dynamic execution activity. |
| _cjs/utils/siwe/types.js | safe | No malicious patterns detected |
| _cjs/utils/siwe/utils.js | safe | No malicious patterns detected; the file contains only a URI validation utility with no network, filesystem, process, or dynamic code execution activity. |
| _cjs/utils/siwe/validateSiweMessage.js | safe | No malicious patterns detected |
| _cjs/utils/stateOverride.js | safe | Cleared by Jev triage; no further analysis needed |
| _cjs/utils/stringify.js | safe | No malicious patterns detected; the code is a simple JSON.stringify wrapper with BigInt support and a custom replacer. |
| _cjs/utils/transaction/assertRequest.js | safe | No malicious patterns detected; the file contains only standard Ethereum transaction request validation logic with no network, filesystem, process, or dynamic code execution concerns. |
| _cjs/utils/transaction/assertTransaction.js | safe | No malicious patterns detected; the file contains only pure validation logic for Ethereum transaction types. |
| _cjs/utils/transaction/getSerializedTransactionType.js | safe | No malicious patterns detected |
| _cjs/utils/transaction/getTransactionType.js | safe | No malicious patterns detected |
| _cjs/utils/transaction/parseTransaction.js | safe | No malicious patterns detected; the file is a standard Ethereum transaction parser with no network, filesystem, process, or dynamic code execution behavior. |
| _cjs/utils/transaction/serializeAccessList.js | safe | No malicious patterns detected; the code performs straightforward access list serialization and validation without external calls, dynamic execution, or filesystem access. |
| _cjs/utils/transaction/serializeTransaction.js | safe | No malicious patterns detected; the file performs standard Ethereum transaction serialization with no network, filesystem, environment, or dynamic code execution activity. |
| _cjs/utils/typedData.js | safe | No malicious patterns detected; the code implements EIP-712 typed data serialization, validation, and domain separator hashing using only local utility imports without network, filesystem, process, or dynamic-code execution capabilities. |
| _cjs/utils/uid.js | safe | No malicious patterns detected; only a minor use of non-cryptographic randomness for ID generation. |
| _cjs/utils/unit/formatEther.js | safe | No malicious patterns detected; the code is a simple utility for formatting Ether amounts using local imports. |
| _cjs/utils/unit/formatGwei.js | safe | No malicious patterns detected |
| _cjs/utils/unit/formatUnits.js | safe | No malicious patterns detected; the code is a pure utility function for formatting units with no I/O, network, or dynamic execution. |
| _cjs/utils/unit/parseEther.js | safe | No malicious patterns detected |
| _cjs/utils/unit/parseGwei.js | safe | No malicious patterns detected |
| _cjs/utils/unit/parseUnits.js | safe | No malicious patterns detected |
| _cjs/utils/wait.js | safe | No malicious patterns detected |
| _cjs/window/index.js | safe | The file only contains a strict mode directive, CommonJS exports setup, and a side-effect import of a sibling types module with a sourcemap comment; no malicious patterns detected. |
| _cjs/zksync/accounts/toSinglesigSmartAccount.js | safe | No malicious patterns detected |
| _cjs/zksync/accounts/toSmartAccount.js | safe | No malicious patterns detected |
| _cjs/zksync/actions/deployContract.js | safe | No malicious patterns detected; the code is a standard contract deployment utility for zkSync that encodes deployment data and sends an EIP-712 transaction. |
| _cjs/zksync/actions/estimateFee.js | safe | No malicious patterns detected |
| _cjs/zksync/actions/estimateGasL1ToL2.js | safe | No malicious patterns detected; the file only defines a normal ethers-style action for estimating L1-to-L2 gas via a client RPC call. |
| _cjs/zksync/actions/getAllBalances.js | safe | No malicious patterns detected |
| _cjs/zksync/actions/getBaseTokenL1Address.js | safe | No malicious patterns detected; the file contains a simple RPC method wrapper with no network, filesystem, or process manipulation beyond a single client.request call. |
| _cjs/zksync/actions/getBlockDetails.js | safe | No malicious patterns detected |
| _cjs/zksync/actions/getBridgehubContractAddress.js | safe | No malicious patterns detected |
| _cjs/zksync/actions/getDefaultBridgeAddresses.js | safe | No malicious patterns detected; the code simply queries a zkSync bridge contract address via a client request and returns the result. |
| _cjs/zksync/actions/getL1Allowance.js | safe | No malicious patterns detected; the code is a standard ERC-20 allowance reader with no exfiltration, credential harvesting, or dynamic execution. |
| _cjs/zksync/actions/getL1Balance.js | safe | No malicious patterns detected |
| _cjs/zksync/actions/getL1BatchBlockRange.js | safe | No malicious patterns detected; the file only performs a standard RPC call and hex-to-number conversion. |
| _cjs/zksync/actions/getL1BatchDetails.js | safe | No malicious patterns detected; the function simply makes a legitimate RPC request to the provided client. |
| _cjs/zksync/actions/getL1BatchNumber.js | safe | No malicious patterns detected |
| _cjs/zksync/actions/getL1ChainId.js | safe | No malicious patterns detected; the code simply makes an RPC call to retrieve the L1 chain ID. |
| _cjs/zksync/actions/getL1TokenAddress.js | safe | No malicious patterns detected |
| _cjs/zksync/actions/getL1TokenBalance.js | safe | No malicious patterns detected |
| _cjs/zksync/actions/getL2TokenAddress.js | safe | No malicious patterns detected; the code is a standard ZKsync utility function for retrieving L2 token addresses. |
| _cjs/zksync/actions/getLogProof.js | safe | No malicious patterns detected |
| _cjs/zksync/actions/getMainContractAddress.js | safe | No malicious patterns detected; the code performs a single RPC call to retrieve the main contract address. |
| _cjs/zksync/actions/getRawBlockTransactions.js | safe | This is a simple zkSync RPC client wrapper that calls getRawBlockTransactions and camelCases the response, with no malicious patterns detected. |
| _cjs/zksync/actions/getTestnetPaymasterAddress.js | safe | No malicious patterns detected |
| _cjs/zksync/actions/getTransactionDetails.js | safe | No malicious patterns detected |
| _cjs/zksync/actions/requestExecute.js | safe | No malicious patterns detected; the code is a standard implementation for requesting an L1->L2 transaction on zkSync and does not exhibit data exfiltration, credential harvesting, obfuscation, or other suspicious behavior. |
| _cjs/zksync/actions/sendEip712Transaction.js | safe | No malicious patterns detected |
| _cjs/zksync/actions/sendTransaction.js | safe | No malicious patterns detected; the file contains standard transaction dispatch logic with no exfiltration, credential harvesting, obfuscation, or dynamic code execution. |
| _cjs/zksync/actions/signEip712Transaction.js | safe | No malicious patterns detected |
| _cjs/zksync/actions/signTransaction.js | safe | No malicious patterns detected; the code is a straightforward transaction signing dispatcher with no external calls, obfuscation, or credential access. |
| _cjs/zksync/actions/withdraw.js | safe | No malicious patterns detected |
| _cjs/zksync/chainConfig.js | safe | The file only exports a static chain configuration object composed of imported formatters, serializers, and a getEip712Domain utility; no malicious patterns, dynamic execution, network activity, credential access, or process spawning were detected. |
| _cjs/zksync/chains.js | safe | No malicious patterns detected; the file contains only standard CommonJS re-exports of ZKsync chain definitions without any suspicious behavior. |
| _cjs/zksync/constants/address.js | safe | This file only defines well-known zkSync contract address constants with no executable or malicious behavior. |
| _cjs/zksync/constants/contract.js | safe | No malicious patterns detected |
| _cjs/zksync/constants/number.js | safe | No malicious patterns detected in the constants file; it only defines numeric constants for zkSync gas parameters. |
| _cjs/zksync/decorators/eip712.js | safe | No malicious patterns detected |
| _cjs/zksync/decorators/publicL1.js | safe | No malicious patterns detected; the module is a simple decorator that exposes L1 balance and allowance retrieval actions. |
| _cjs/zksync/decorators/publicL2.js | safe | No malicious patterns detected; the file only exports a decorator that wires together static, locally-defined action functions. |
| _cjs/zksync/decorators/walletL1.js | safe | No malicious patterns detected |
| _cjs/zksync/decorators/walletL2.js | safe | No malicious patterns detected |
| _cjs/zksync/errors/bridge.js | safe | No malicious patterns detected |
| _cjs/zksync/errors/bytecode.js | safe | Cleared by Jev triage; no further analysis needed |
| _cjs/zksync/errors/token-is-eth.js | safe | No malicious patterns detected; the file only defines a simple error class. |
| _cjs/zksync/errors/transaction.js | safe | No malicious patterns detected |
| _cjs/zksync/formatters.js | safe | No malicious patterns detected; the code only formats blockchain transaction and receipt data using standard encoding utilities. |
| _cjs/zksync/index.js | safe | No malicious patterns detected; the file is a standard barrel export module for zksync utilities. |
| _cjs/zksync/serializers.js | safe | No malicious patterns detected; the file contains legitimate transaction serialization logic for zkSync EIP-712 transactions. |
| _cjs/zksync/types/account.js | safe | No malicious patterns detected in the provided file. |
| _cjs/zksync/types/block.js | safe | No malicious patterns detected |
| _cjs/zksync/types/chain.js | safe | No malicious patterns detected; the file only contains standard CommonJS module boilerplate and a source map reference. |
| _cjs/zksync/types/contract.js | safe | No malicious patterns detected |
| _cjs/zksync/types/eip1193.js | safe | No malicious patterns detected |
| _cjs/zksync/types/eip712.js | safe | The file is a compiled CommonJS type declaration stub with no executable logic or malicious patterns. |
| _cjs/zksync/types/fee.js | safe | No malicious patterns detected |
| _cjs/zksync/types/log.js | safe | No malicious patterns detected |
| _cjs/zksync/types/proof.js | safe | No malicious patterns detected |
| _cjs/zksync/types/transaction.js | safe | No malicious patterns detected |
| _cjs/zksync/utils/abi/encodeDeployData.js | safe | Cleared by Jev triage; no further analysis needed |
| _cjs/zksync/utils/assertEip712Request.js | safe | No malicious patterns detected; the code performs only local validation of EIP-712 transaction requests. |
| _cjs/zksync/utils/assertEip712Transaction.js | safe | No malicious patterns detected; the file only performs input validation for EIP-712 transactions using internal error and utility imports. |
| _cjs/zksync/utils/bridge/getL2HashFromPriorityOp.js | safe | No malicious patterns detected in the provided code; it is a straightforward utility function for extracting an L2 transaction hash from a priority operation receipt. |
| _cjs/zksync/utils/camelCaseKeys.js | safe | No malicious patterns detected |
| _cjs/zksync/utils/getEip712Domain.js | safe | No malicious patterns detected |
| _cjs/zksync/utils/hashBytecode.js | safe | Cleared by Jev triage; no further analysis needed |
| _cjs/zksync/utils/isEip712Transaction.js | safe | No malicious patterns detected |
| _cjs/zksync/utils/isEth.js | safe | No malicious patterns detected; the code is a straightforward utility function for comparing token addresses to known Ethereum address constants. |
| _cjs/zksync/utils/parseEip712Transaction.js | safe | No malicious patterns detected; the code is a straightforward EIP-712 transaction parser using internal utility and error modules. |
| _cjs/zksync/utils/paymaster/getApprovalBasedPaymasterInput.js | safe | No malicious patterns detected; the code is a straightforward utility for encoding paymaster input data for zkSync. |
| _cjs/zksync/utils/paymaster/getGeneralPaymasterInput.js | safe | No malicious patterns detected; the code simply encodes paymaster input data using standard ABI encoding utilities. |
| _esm/account-abstraction/accounts/createWebAuthnCredential.js | safe | No malicious patterns detected; the code is a straightforward wrapper around WebAuthn credential creation using the ox library. |
| _esm/account-abstraction/accounts/implementations/toCoinbaseSmartAccount.js | safe | No malicious patterns detected |
| _esm/account-abstraction/accounts/toSmartAccount.js | safe | No malicious patterns detected; the file contains standard viem smart account abstraction logic without exfiltration, obfuscation, or process execution. |
| _esm/account-abstraction/accounts/toWebAuthnAccount.js | safe | No malicious patterns detected; the code is a straightforward WebAuthn account abstraction implementation using signature hashing and WebAuthn signing. |
| _esm/account-abstraction/accounts/types.js | safe | No malicious patterns detected |
| _esm/account-abstraction/actions/bundler/estimateUserOperationGas.js | safe | No malicious patterns detected |
| _esm/account-abstraction/actions/bundler/getSupportedEntryPoints.js | safe | No malicious patterns detected |
| _esm/account-abstraction/actions/bundler/getUserOperation.js | safe | No malicious patterns detected; the code is a straightforward viem bundler action that fetches a user operation by hash and formats the result. |
| _esm/account-abstraction/actions/bundler/getUserOperationReceipt.js | safe | No malicious patterns detected |
| _esm/account-abstraction/actions/bundler/prepareUserOperation.js | safe | No malicious patterns detected; the code is a legitimate viem library module for preparing Ethereum User Operations with no exfiltration, obfuscation, or backdoor behavior. |
| _esm/account-abstraction/actions/bundler/sendUserOperation.js | safe | No malicious patterns detected in this standard viem account abstraction module that only prepares and broadcasts user operations via RPC. |
| _esm/account-abstraction/actions/bundler/waitForUserOperationReceipt.js | safe | No malicious patterns detected; the code implements a standard polling utility for waiting on user operation receipts using viem's own action/observe/poll utilities. |
| _esm/account-abstraction/actions/paymaster/getPaymasterData.js | safe | No malicious patterns detected; the code is a legitimate viem account abstraction action for retrieving paymaster data. |
| _esm/account-abstraction/actions/paymaster/getPaymasterStubData.js | safe | No malicious patterns detected |
| _esm/account-abstraction/clients/createBundlerClient.js | safe | No malicious patterns detected |
| _esm/account-abstraction/clients/createPaymasterClient.js | safe | No malicious patterns detected |
| _esm/account-abstraction/clients/decorators/bundler.js | safe | No malicious patterns detected |
| _esm/account-abstraction/clients/decorators/paymaster.js | safe | No malicious patterns detected; the file only re-exports two paymaster action functions without any suspicious behavior. |
| _esm/account-abstraction/constants/abis.js | safe | No malicious patterns detected; the file only exports static Ethereum ABI definitions for ERC-4337 EntryPoint contracts. |
| _esm/account-abstraction/constants/address.js | safe | No malicious patterns detected; the file only exports two well-known ERC-4337 EntryPoint contract addresses. |
| _esm/account-abstraction/errors/bundler.js | safe | No malicious patterns detected |
| _esm/account-abstraction/errors/userOperation.js | safe | No malicious patterns detected; the file only defines error classes for user operation handling without any external data transmission, process spawning, or dynamic code execution. |
| _esm/account-abstraction/index.js | safe | No malicious patterns detected; the file is a pure ESM barrel export with no executable code beyond re-exports. |
| _esm/account-abstraction/types/account.js | safe | No malicious patterns detected |
| _esm/account-abstraction/types/entryPointVersion.js | safe | The file contains only an empty export and a source map reference, with no executable or malicious code. |
| _esm/account-abstraction/types/rpc.js | safe | No malicious patterns detected |
| _esm/account-abstraction/types/userOperation.js | safe | No malicious patterns detected |
| _esm/account-abstraction/utils/errors/getBundlerError.js | safe | No malicious patterns detected |
| _esm/account-abstraction/utils/errors/getUserOperationError.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/account-abstraction/utils/formatters/userOperation.js | safe | No malicious patterns detected; the code is a straightforward utility that converts userOperation fields to BigInt. |
| _esm/account-abstraction/utils/formatters/userOperationGas.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/account-abstraction/utils/formatters/userOperationReceipt.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/account-abstraction/utils/formatters/userOperationRequest.js | safe | No malicious patterns detected |
| _esm/account-abstraction/utils/userOperation/getUserOperationHash.js | safe | No malicious patterns detected; the code performs pure cryptographic hashing for ERC-4337 user operations. |
| _esm/account-abstraction/utils/userOperation/toPackedUserOperation.js | safe | No malicious patterns detected; the file contains pure data transformation logic for packing user operations with no network, filesystem, process, or dynamic code execution concerns. |
| _esm/accounts/generateMnemonic.js | safe | No malicious patterns detected |
| _esm/accounts/generatePrivateKey.js | safe | No malicious patterns detected |
| _esm/accounts/hdKeyToAccount.js | safe | No malicious patterns detected |
| _esm/accounts/index.js | safe | No malicious patterns detected; this is a standard barrel export file for account-related cryptographic utilities. |
| _esm/accounts/mnemonicToAccount.js | safe | No malicious patterns detected; the file is a straightforward mnemonic-to-account converter using standard cryptographic libraries. |
| _esm/accounts/privateKeyToAccount.js | safe | No malicious patterns detected; the code is a legitimate Ethereum account abstraction utility using standard cryptographic libraries. |
| _esm/accounts/toAccount.js | safe | No malicious patterns detected; the module only constructs account objects from input without any exfiltration, obfuscation, or side effects. |
| _esm/accounts/types.js | safe | No malicious patterns detected |
| _esm/accounts/utils/parseAccount.js | safe | No malicious patterns detected |
| _esm/accounts/utils/privateKeyToAddress.js | safe | No malicious patterns detected; the code is a straightforward cryptographic utility for deriving an Ethereum address from a private key. |
| _esm/accounts/utils/publicKeyToAddress.js | safe | No malicious patterns detected |
| _esm/accounts/utils/sign.js | safe | This is a legitimate cryptographic signing utility using @noble/curves secp256k1 with no malicious patterns detected. |
| _esm/accounts/utils/signAuthorization.js | safe | No malicious patterns detected |
| _esm/accounts/utils/signMessage.js | safe | Code appears to be a legitimate Ethereum message signing utility with no malicious patterns detected. |
| _esm/accounts/utils/signTransaction.js | safe | No malicious patterns detected |
| _esm/accounts/utils/signTypedData.js | safe | No malicious patterns detected; the code is a standard EIP-712 typed data signing utility that delegates hashing and signing to local modules without network, filesystem, or process manipulation. |
| _esm/accounts/wordlists.js | safe | No malicious patterns detected |
| _esm/actions/ens/getEnsAddress.js | safe | No malicious patterns detected; the code is a standard viem library function for resolving ENS addresses via on-chain smart contract calls. |
| _esm/actions/ens/getEnsAvatar.js | safe | No malicious patterns detected; code is a standard ENS avatar resolution utility with no exfiltration, credential harvesting, dynamic execution, or network manipulation. |
| _esm/actions/ens/getEnsName.js | safe | No malicious patterns detected; the code is a standard viem ENS reverse-resolution helper with no network, filesystem, process, or dynamic-code abuse. |
| _esm/actions/ens/getEnsResolver.js | safe | No malicious patterns detected |
| _esm/actions/ens/getEnsText.js | safe | No malicious patterns detected |
| _esm/actions/getContract.js | safe | The code is a standard viem library utility for creating type-safe contract interfaces with no malicious patterns detected. |
| _esm/actions/index.js | safe | This is a simple barrel export file for a viem-like library; no malicious patterns, dynamic code execution, network calls, or credential harvesting detected. |
| _esm/actions/public/call.js | safe | This is a legitimate open-source Ethereum library module (viem) for making eth_call RPC requests; no malicious patterns were found. |
| _esm/actions/public/createAccessList.js | safe | No malicious patterns detected |
| _esm/actions/public/createBlockFilter.js | safe | No malicious patterns detected |
| _esm/actions/public/createContractEventFilter.js | safe | No malicious patterns detected in this viem utility file, which only constructs an Ethereum filter request using provided parameters without any suspicious behavior. |
| _esm/actions/public/createEventFilter.js | safe | This is a legitimate viem library module for creating Ethereum event filters; no malicious patterns detected. |
| _esm/actions/public/createPendingTransactionFilter.js | safe | No malicious patterns detected; the code is a standard viem library function for creating a pending transaction filter via JSON-RPC. |
| _esm/actions/public/estimateContractGas.js | safe | No malicious patterns detected; the code is a standard viem library helper for estimating contract gas with no exfiltration, credential harvesting, obfuscation, or unauthorized system access. |
| _esm/actions/public/estimateFeesPerGas.js | safe | No malicious patterns detected; the code is a standard Ethereum fee estimation utility that performs BigInt arithmetic and delegates to internal RPC actions without any data exfiltration, credential harvesting, obfuscation, or suspicious process/network activity. |
| _esm/actions/public/estimateGas.js | safe | No malicious patterns detected |
| _esm/actions/public/estimateMaxPriorityFeePerGas.js | safe | No malicious patterns detected; the code is a standard Ethereum fee estimation utility with no exfiltration, credential harvesting, obfuscation, or process execution. |
| _esm/actions/public/getBalance.js | safe | No malicious patterns detected |
| _esm/actions/public/getBlobBaseFee.js | safe | The file only implements a simple JSON-RPC call to retrieve the blob base fee and converts it to BigInt, with no suspicious behavior. |
| _esm/actions/public/getBlock.js | safe | No malicious patterns detected; the code is a standard Ethereum RPC block retrieval function with no data exfiltration, credential harvesting, obfuscation, or other suspicious behavior. |
| _esm/actions/public/getBlockNumber.js | safe | No malicious patterns detected; the code is a standard viem client utility for fetching the latest block number with caching. |
| _esm/actions/public/getBlockTransactionCount.js | safe | No malicious patterns detected; the code is a standard viem library function for fetching block transaction counts via Ethereum JSON-RPC. |
| _esm/actions/public/getChainId.js | safe | No malicious patterns detected |
| _esm/actions/public/getCode.js | safe | This is a standard viem library function for retrieving contract bytecode via eth_getCode JSON-RPC; no malicious patterns detected. |
| _esm/actions/public/getContractEvents.js | safe | No malicious patterns detected; the file contains standard viem library logic for fetching contract event logs via JSON-RPC. |
| _esm/actions/public/getEip712Domain.js | safe | No malicious patterns detected; the code is a straightforward viem library action for reading EIP-712 domains via contract calls. |
| _esm/actions/public/getFeeHistory.js | safe | No malicious patterns detected |
| _esm/actions/public/getFilterChanges.js | safe | No malicious patterns detected; the code implements standard Ethereum JSON-RPC filter changes handling with no exfiltration, credential harvesting, obfuscation, or process execution. |
| _esm/actions/public/getFilterLogs.js | safe | No malicious patterns detected |
| _esm/actions/public/getGasPrice.js | safe | No malicious patterns detected |
| _esm/actions/public/getLogs.js | safe | No malicious patterns detected; the code is a standard Ethereum JSON-RPC client method for fetching logs with no suspicious behavior. |
| _esm/actions/public/getProof.js | safe | No malicious patterns detected; the code is a straightforward Ethereum JSON-RPC helper for getProof with no exfiltration, credential access, or dynamic execution. |
| _esm/actions/public/getStorageAt.js | safe | No malicious patterns detected; the code is a standard Ethereum JSON-RPC wrapper for eth_getStorageAt with no external data flows, obfuscation, or execution risks. |
| _esm/actions/public/getTransaction.js | safe | No malicious patterns detected; this is a legitimate viem library function for fetching Ethereum transaction data via JSON-RPC. |
| _esm/actions/public/getTransactionConfirmations.js | safe | No malicious patterns detected; the file contains legitimate Ethereum transaction confirmation logic for the viem library. |
| _esm/actions/public/getTransactionCount.js | safe | This is a standard viem library function that reads an Ethereum account's transaction count via JSON-RPC; no malicious patterns detected. |
| _esm/actions/public/getTransactionReceipt.js | safe | No malicious patterns detected |
| _esm/actions/public/multicall.js | safe | No malicious patterns detected; the code is a legitimate multicall implementation for Ethereum smart contract interactions using the viem library. |
| _esm/actions/public/readContract.js | safe | No malicious patterns detected; the code is a standard viem readContract action for calling read-only smart contract functions. |
| _esm/actions/public/simulateBlocks.js | safe | No malicious patterns detected; the code is a legitimate viem library function for simulating Ethereum blocks via RPC calls. |
| _esm/actions/public/simulateCalls.js | safe | No malicious patterns detected; the file is a standard viem action for simulating Ethereum calls with no exfiltration, obfuscation, dynamic execution, or suspicious behavior. |
| _esm/actions/public/simulateContract.js | safe | No malicious patterns detected; the code is a legitimate viem library function for simulating contract interactions without any exfiltration, obfuscation, or harmful behavior. |
| _esm/actions/public/uninstallFilter.js | safe | The code is a straightforward viem utility that calls eth_uninstallFilter via the provided filter object, with no malicious or suspicious behavior. |
| _esm/actions/public/verifyHash.js | safe | No malicious patterns detected; the code is a standard ERC-6492 signature verification utility for a viem-like library, with no external network calls, environment harvesting, dynamic execution, or file system/process manipulation. |
| _esm/actions/public/verifyMessage.js | safe | No malicious patterns detected; the code is a straightforward cryptographic message verification wrapper from the viem library. |
| _esm/actions/public/verifyTypedData.js | safe | No malicious patterns detected |
| _esm/actions/public/waitForTransactionReceipt.js | safe | No malicious patterns detected; the code is a legitimate viem library action for polling transaction receipts and handling replacements. |
| _esm/actions/public/watchBlockNumber.js | safe | No malicious patterns detected |
| _esm/actions/public/watchBlocks.js | safe | No malicious patterns detected; the code is a legitimate viem utility for watching blockchain blocks. |
| _esm/actions/public/watchContractEvent.js | safe | No malicious patterns detected; the code implements legitimate contract event watching using standard viem utilities without any data exfiltration, credential harvesting, obfuscation, or suspicious system interactions. |
| _esm/actions/public/watchEvent.js | safe | No malicious patterns detected |
| _esm/actions/public/watchPendingTransactions.js | safe | No malicious patterns detected |
| _esm/actions/siwe/verifySiweMessage.js | safe | No malicious patterns detected; the file contains standard SIWE message verification logic using only local imports and no external data exfiltration, dynamic code execution, or system calls. |
| _esm/actions/wallet/addChain.js | safe | No malicious patterns detected; the code is a straightforward implementation of the EIP-3085 wallet_addEthereumChain RPC method with no exfiltration, obfuscation, or other suspicious behavior. |
| _esm/actions/wallet/deployContract.js | safe | This file is a standard viem library contract deployment helper that encodes deployment data and forwards it to sendTransaction without any malicious patterns. |
| _esm/actions/wallet/getAddresses.js | safe | No malicious patterns detected; the code is a standard viem wallet client utility that retrieves account addresses via eth_accounts and performs address checksumming. |
| _esm/actions/wallet/getPermissions.js | safe | The file is a straightforward viem wallet action wrapper that calls wallet_getPermissions via the client transport with no malicious patterns detected. |
| _esm/actions/wallet/prepareTransactionRequest.js | safe | No malicious patterns detected |
| _esm/actions/wallet/requestAddresses.js | safe | No malicious patterns detected; the code is a standard viem wallet utility for requesting Ethereum accounts and normalizing addresses. |
| _esm/actions/wallet/requestPermissions.js | safe | No malicious patterns detected |
| _esm/actions/wallet/sendRawTransaction.js | safe | No malicious patterns detected; the code is a straightforward wrapper for the eth_sendRawTransaction JSON-RPC method with no data exfiltration, credential access, obfuscation, or process execution. |
| _esm/actions/wallet/sendTransaction.js | safe | No malicious patterns detected; the code is a legitimate Ethereum transaction sending module from the viem library. |
| _esm/actions/wallet/signMessage.js | safe | No malicious patterns detected |
| _esm/actions/wallet/signTransaction.js | safe | No malicious patterns detected |
| _esm/actions/wallet/signTypedData.js | safe | No malicious patterns detected; the code is a legitimate viem library function for EIP-712 typed data signing without any exfiltration, obfuscation, or backdoor behavior. |
| _esm/actions/wallet/switchChain.js | safe | This is a legitimate viem library function that switches the active chain in an Ethereum wallet via the standard wallet_switchEthereumChain JSON-RPC method, with no malicious patterns detected. |
| _esm/actions/wallet/watchAsset.js | safe | The file is a standard, non-malicious implementation of an EIP-747 wallet_watchAsset RPC call with no suspicious patterns. |
| _esm/actions/wallet/writeContract.js | safe | No malicious patterns detected; the code is a standard Ethereum contract write action with no exfiltration, obfuscation, or dynamic execution. |
| _esm/celo/chainConfig.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/celo/fees.js | safe | No malicious patterns detected; the code is a legitimate fee estimation utility for the Celo blockchain with no external data exfiltration, credential harvesting, obfuscation, or dynamic execution. |
| _esm/celo/formatters.js | safe | No malicious patterns detected; this is a benign Celo blockchain formatter module with no network, filesystem, or execution side effects. |
| _esm/celo/index.js | safe | No malicious patterns detected |
| _esm/celo/parsers.js | safe | No malicious patterns detected |
| _esm/celo/serializers.js | safe | The code performs local transaction serialization and validation for Celo CIP-42/CIP-64 transactions with no exfiltration, dynamic execution, or other malicious patterns detected. |
| _esm/celo/types.js | safe | No malicious patterns detected |
| _esm/celo/utils.js | safe | No malicious patterns detected |
| _esm/chains/definitions/0g.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/5ireChain.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/abey.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/abstract.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/abstractTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/acala.js | safe | No malicious patterns detected in the static chain definition file for Acala. |
| _esm/chains/definitions/acria.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/adf.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/aioz.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/alephZero.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/alephZeroTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/alienX.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/alienXHalTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/ancient8.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/ancient8Sepolia.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/anvil.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/apeChain.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/apexTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/arbitrum.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/arbitrumGoerli.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/arbitrumNova.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/arbitrumSepolia.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/areonNetwork.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/areonNetworkTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/artelaTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/arthera.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/artheraTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/assetChain.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/assetChainTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/astar.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/astarZkEVM.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/astarZkyoto.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/atletaOlympia.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/aurora.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/auroraTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/auroria.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/avalanche.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/avalancheFuji.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/b3.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/b3Sepolia.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/bahamut.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/base.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/baseGoerli.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/baseSepolia.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/beam.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/beamTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/bearNetworkChainMainnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/bearNetworkChainTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/berachain.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/berachainTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/berachainTestnetbArtio.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/bevmMainnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/bifrost.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/birdlayer.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/bitTorrent.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/bitTorrentTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/bitgert.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/bitkub.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/bitkubTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/bitlayer.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/bitlayerTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/bitrock.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/blast.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/blastSepolia.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/bob.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/bobSepolia.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/boba.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/bobaSepolia.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/boolBetaMainnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/botanixTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/bounceBit.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/bounceBitTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/bronos.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/bronosTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/bsc.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/bscGreenfield.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/bscTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/bsquared.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/bsquaredTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/btr.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/btrTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/bxn.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/bxnTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/cannon.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/canto.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/celo.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/celoAlfajores.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/chang.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/chiliz.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/chips.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/citreaTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/classic.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/coinbit.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/coinex.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/confluxESpace.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/confluxESpaceTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/coreDao.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/corn.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/cornTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/crab.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/creatorTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/creditCoin3Mainnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/creditCoin3Testnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/cronos.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/cronosTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/cronoszkEVM.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/cronoszkEVMTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/crossbell.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/curtis.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/cyber.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/cyberTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/dailyNetwork.js | safe | No malicious patterns detected |
| _esm/chains/definitions/dailyNetworkTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/darwinia.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/dchain.js | safe | No malicious patterns detected; the file only defines a blockchain chain configuration with static data. |
| _esm/chains/definitions/dchainTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/defichainEvm.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/defichainEvmTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/degen.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/dfk.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/diode.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/disChain.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/dodochainTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/dogechain.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/donatuz.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/dosChain.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/dosChainTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/dreyerxMainnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/dreyerxTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/dustboyIoT.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/dymension.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/edgeless.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/edgelessTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/edgeware.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/edgewareTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/ekta.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/ektaTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/elastos.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/elastosTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/electroneum.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/electroneumTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/elysiumTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/energy.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/enuls.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/eon.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/eos.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/eosTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/etherlink.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/etherlinkTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/etp.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/evmos.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/evmosTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/exSat.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/exSatTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/excelonMainnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/expanse.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/fantom.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/fantomSonicTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/fantomTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/fibo.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/filecoin.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/filecoinCalibration.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/filecoinHyperspace.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/flare.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/flareTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/flowMainnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/flowPreviewnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/flowTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/fluence.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/fluenceStage.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/fluenceTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/forma.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/forta.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/foundry.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/fraxtal.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/fraxtalTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/funkiMainnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/funkiSepolia.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/fuse.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/fuseSparknet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/fusion.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/fusionTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/garnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/geist.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/genesys.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/glideL1Protocol.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/glideL2Protocol.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/gnosis.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/gnosisChiado.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/goChain.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/goat.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/gobi.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/godwoken.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/goerli.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/gravity.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/guruNetwork.js | safe | No malicious patterns detected; the file is a standard blockchain chain definition with static configuration data and no execution, network, or filesystem risks. |
| _esm/chains/definitions/guruTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/ham.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/happychainTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/haqqMainnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/haqqTestedge2.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/hardhat.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/harmonyOne.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/hashKeyChain.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/hashkeyChainTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/hedera.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/hederaPreviewnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/hederaTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/hela.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/hemi.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/hemiSepolia.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/holesky.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/hpb.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/huddle01Mainnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/huddle01Testnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/humanode.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/humanodeTestnet5.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/hychain.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/hychainTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/iSunCoin.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/idchain.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/immutableZkEvm.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/immutableZkEvmTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/inEVM.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/initVerse.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/initVerseGenesis.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/ink.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/inkSepolia.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/iota.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/iotaTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/iotex.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/iotexTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/jbc.js | safe | No malicious patterns detected; this file only defines a blockchain chain configuration with static RPC and explorer URLs. |
| _esm/chains/definitions/jbcTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/kaia.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/kairos.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/kakarotSepolia.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/kakarotStarknetSepolia.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/kardiaChain.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/karura.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/kava.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/kavaTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/kcc.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/kinto.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/klaytn.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/klaytnBaobab.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/koi.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/kroma.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/kromaSepolia.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/l3x.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/l3xTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/lavita.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/lensTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/lightlinkPegasus.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/lightlinkPhoenix.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/linea.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/lineaGoerli.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/lineaSepolia.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/lineaTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/lisk.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/liskSepolia.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/localhost.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/loop.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/lukso.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/luksoTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/lumiaMainnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/lumiaTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/lycan.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/lyra.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/mainnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/mandala.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/manta.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/mantaSepoliaTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/mantaTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/mantle.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/mantleSepoliaTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/mantleTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/mapProtocol.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/matchain.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/matchainTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/mchVerse.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/mekong.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/meld.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/merlin.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/metachain.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/metachainIstanbul.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/metadium.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/metalL2.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/meter.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/meterTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/metis.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/metisGoerli.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/metisSepolia.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/mev.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/mevTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/mint.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/mintSepoliaTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/mitosisTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/mode.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/modeTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/monadTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/moonbaseAlpha.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/moonbeam.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/moonbeamDev.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/moonriver.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/morph.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/morphHolesky.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/morphSepolia.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/nahmii.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/nautilus.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/near.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/nearTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/neonDevnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/neonMainnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/neoxMainnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/neoxT4.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/nexi.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/nexilix.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/oasisTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/oasys.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/odysseyTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/okc.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/omax.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/oneWorld.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/oortmainnetDev.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/opBNB.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/opBNBTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/optimism.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/optimismGoerli.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/optimismSepolia.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/optopia.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/optopiaTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/orderly.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/orderlySepolia.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/otimDevnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/palm.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/palmTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/pgn.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/pgnTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/phoenix.js | safe | No malicious patterns detected |
| _esm/chains/definitions/planq.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/playfiAlbireo.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/plinga.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/plume.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/plumeDevnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/plumeTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/polterTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/polygon.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/polygonAmoy.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/polygonMumbai.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/polygonZkEvm.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/polygonZkEvmCardona.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/polygonZkEvmTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/premiumBlock.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/pulsechain.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/pulsechainV4.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/pumpfiTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/qMainnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/qTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/ql1.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/real.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/redbellyMainnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/redbellyTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/reddioSepolia.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/redstone.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/rei.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/reyaNetwork.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/rivalz.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/rollux.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/rolluxTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/ronin.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/root.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/rootPorcini.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/rootstock.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/rootstockTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/rss3.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/rss3Sepolia.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/saakuru.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/saga.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/saigon.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/sanko.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/sapphire.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/sapphireTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/satoshivm.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/satoshivmTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/scroll.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/scrollSepolia.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/sei.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/seiDevnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/seiTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/sepolia.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/shape.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/shapeSepolia.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/shardeumSphinx.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/shibarium.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/shibariumTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/shiden.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/shimmer.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/shimmerTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/sidra.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/silicon.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/siliconSepolia.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/sixProtocol.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/skale/brawl.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/skale/calypso.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/skale/calypsoTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/skale/cryptoBlades.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/skale/cryptoColosseum.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/skale/europa.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/skale/europaTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/skale/exorde.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/skale/humanProtocol.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/skale/nebula.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/skale/nebulaTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/skale/razor.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/skale/titan.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/skale/titanTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/sketchpad.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/snax.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/snaxTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/soneium.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/soneiumMinato.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/songbird.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/songbirdTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/sonic.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/sonicTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/sophon.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/sophonTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/spicy.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/step.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/story.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/storyOdyssey.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/storyTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/stratis.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/superlumio.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/superposition.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/superseed.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/superseedSepolia.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/swan.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/swanSaturnTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/swellchain.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/swissdlt.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/syscoin.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/syscoinTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/taiko.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/taikoHekla.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/taikoJolnir.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/taikoKatla.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/taikoTestnetSepolia.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/taraxa.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/taraxaTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/telcoinTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/telos.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/telosTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/tenet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/ternoa.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/thaiChain.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/that.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/theta.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/thetaTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/thunderCore.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/thunderTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/tiktrixTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/tomb.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/treasure.js | safe | Chain definition file for Treasure network contains only static configuration with no executable or suspicious code. |
| _esm/chains/definitions/treasureTopaz.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/tron.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/ubiq.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/ultra.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/ultraTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/ultron.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/ultronTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/unichain.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/unichainSepolia.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/unique.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/uniqueOpal.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/uniqueQuartz.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/unreal.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/vanar.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/vechain.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/velas.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/viction.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/victionTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/vision.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/visionTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/wanchain.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/wanchainTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/weavevmAlphanet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/wemix.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/wemixTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/wmcTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/worldLand.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/worldchain.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/worldchainSepolia.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/xLayer.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/xLayerTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/xai.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/xaiTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/xdc.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/xdcTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/xrOne.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/xrSepolia.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/yooldoVerse.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/yooldoVerseTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/zenchainTestnet.js | safe | No malicious patterns detected; the file only defines a blockchain testnet chain configuration with no executable, network, or file system side effects. |
| _esm/chains/definitions/zeniq.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/zetachain.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/zetachainAthensTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/zhejiang.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/zilliqa.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/zilliqaTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/zircuit.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/zircuitTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/zkFair.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/zkFairTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/zkLinkNova.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/zkLinkNovaSepoliaTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/zksync.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/zksyncInMemoryNode.js | safe | No malicious patterns detected |
| _esm/chains/definitions/zksyncLocalCustomHyperchain.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/zksyncLocalHyperchain.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/zksyncLocalHyperchainL1.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/zksyncLocalNode.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/zksyncSepoliaTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/zora.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/zoraSepolia.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/definitions/zoraTestnet.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/index.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/chains/utils.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/clients/createClient.js | safe | No malicious patterns detected |
| _esm/clients/createPublicClient.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/clients/createTestClient.js | safe | The file contains a straightforward factory function for creating a test client with no malicious patterns, external data transfers, or dangerous dynamic code execution. |
| _esm/clients/createWalletClient.js | safe | No malicious patterns detected |
| _esm/clients/decorators/public.js | safe | No malicious patterns detected; the file is a standard viem public client decorator that imports and wraps legitimate blockchain RPC actions. |
| _esm/clients/decorators/test.js | safe | No malicious patterns detected |
| _esm/clients/decorators/wallet.js | safe | No malicious patterns detected |
| _esm/clients/transports/createTransport.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/clients/transports/custom.js | safe | This is a benign, small viem transport factory that binds a user-supplied EIP-1193 provider's request method; no malicious patterns such as exfiltration, credential harvesting, dynamic execution, or install-time hooks are present. |
| _esm/clients/transports/fallback.js | safe | No malicious patterns detected |
| _esm/clients/transports/http.js | safe | No malicious patterns detected; the code is a standard JSON-RPC HTTP transport implementation with no exfiltration, obfuscation, or process execution. |
| _esm/clients/transports/ipc.js | safe | The file implements a standard JSON-RPC IPC transport for Ethereum-like clients without any malicious patterns, obfuscation, credential theft, or suspicious system/network activity. |
| _esm/clients/transports/webSocket.js | safe | No malicious patterns detected; this is a standard JSON-RPC WebSocket transport implementation for blockchain clients. |
| _esm/constants/abis.js | safe | No malicious patterns detected; the file contains only static ABI definitions for Ethereum smart contracts. |
| _esm/constants/address.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/constants/blob.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/constants/bytes.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/constants/contract.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/constants/contracts.js | safe | The file contains only three exported hex-encoded EVM bytecode string constants for deployless calls and signature validation, with no executable JavaScript, network, filesystem, or process operations. |
| _esm/constants/kzg.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/constants/number.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/constants/solidity.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/constants/strings.js | safe | No malicious patterns detected |
| _esm/constants/unit.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/ens/index.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/errors/abi.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/errors/account.js | safe | No malicious patterns detected; the file only defines simple error classes extending BaseError with no network, filesystem, process, or dynamic code execution activity. |
| _esm/errors/address.js | safe | No malicious patterns detected |
| _esm/errors/base.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/errors/blob.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/errors/block.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/errors/ccip.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/errors/chain.js | safe | No malicious patterns detected in the provided error class definitions. |
| _esm/errors/contract.js | safe | No malicious patterns detected; the file only defines error classes for a JavaScript Ethereum library (viem) without any network, filesystem, or code-execution behavior. |
| _esm/errors/cursor.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/errors/data.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/errors/eip712.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/errors/encoding.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/errors/ens.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/errors/estimateGas.js | safe | No malicious patterns detected |
| _esm/errors/fee.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/errors/log.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/errors/node.js | safe | No malicious patterns detected; the file only defines standard Ethereum JSON-RPC error classes with static message formatting and no network, filesystem, process, or dynamic execution behavior. |
| _esm/errors/request.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/errors/rpc.js | safe | No malicious patterns detected |
| _esm/errors/siwe.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/errors/stateOverride.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/errors/transaction.js | safe | No malicious patterns detected; the file contains standard error handling and formatting utilities for transaction-related errors. |
| _esm/errors/transport.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/errors/typedData.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/errors/unit.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/errors/utils.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/errors/version.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/experimental/eip5792/actions/getCallsStatus.js | safe | No malicious patterns detected |
| _esm/experimental/eip5792/actions/getCapabilities.js | safe | No malicious patterns detected; the code implements a standard EIP-5792 wallet capability fetch using only the provided client. |
| _esm/experimental/eip5792/actions/sendCalls.js | safe | No malicious patterns detected |
| _esm/experimental/eip5792/actions/showCallsStatus.js | safe | No malicious patterns detected; the code only forwards a caller-supplied id to the wallet provider via the EIP-5792 wallet_showCallsStatus RPC method. |
| _esm/experimental/eip5792/actions/writeContracts.js | safe | No malicious patterns detected; the file is a deprecated wrapper that encodes contract call data and delegates to viem's sendCalls action. |
| _esm/experimental/eip5792/decorators/eip5792.js | safe | No malicious patterns detected; the code is a straightforward EIP-5792 action decorator that delegates to imported action functions without any suspicious behavior. |
| _esm/experimental/eip7702/actions/prepareAuthorization.js | safe | No malicious patterns detected; the code appears to be a legitimate EIP-7702 authorization preparation utility with no data exfiltration, obfuscation, or suspicious behavior. |
| _esm/experimental/eip7702/actions/signAuthorization.js | safe | No malicious patterns detected; the code is a standard EIP-7702 authorization signing utility with no network, filesystem, or dynamic execution concerns. |
| _esm/experimental/eip7702/decorators/eip7702.js | safe | No malicious patterns detected; the file is a simple decorator exposing EIP-7702 authorization actions for the viem library. |
| _esm/experimental/eip7702/types/authorization.js | safe | No malicious patterns detected |
| _esm/experimental/eip7702/types/rpc.js | safe | No malicious patterns detected |
| _esm/experimental/eip7702/utils/hashAuthorization.js | safe | The code implements a standard EIP-7702 authorization hash calculation using cryptographic utilities and contains no malicious patterns. |
| _esm/experimental/eip7702/utils/recoverAuthorizationAddress.js | safe | No malicious patterns detected; the code only performs cryptographic signature recovery using local imports. |
| _esm/experimental/eip7702/utils/serializeAuthorizationList.js | safe | No malicious patterns detected; the code is a straightforward EIP-7702 authorization list serializer with no network, filesystem, process, or dynamic execution behavior. |
| _esm/experimental/eip7702/utils/verifyAuthorization.js | safe | No malicious patterns detected; the code performs standard EIP-7702 authorization signature verification without any exfiltration, dynamic execution, or install-time hooks. |
| _esm/experimental/erc7715/actions/grantPermissions.js | safe | No malicious patterns detected; the code is a standard implementation of ERC-7715 grantPermissions for the viem library. |
| _esm/experimental/erc7715/decorators/erc7715.js | safe | No malicious patterns detected; the file only defines a simple decorator that wires grantPermissions to a client, with no network, filesystem, process, or dynamic execution behavior. |
| _esm/experimental/erc7715/types/permission.js | safe | No malicious patterns detected |
| _esm/experimental/erc7715/types/policy.js | safe | No malicious patterns detected |
| _esm/experimental/erc7715/types/signer.js | safe | No malicious patterns detected; the file contains only a TypeScript type re-export stub and a source map reference. |
| _esm/experimental/erc7739/actions/signMessage.js | safe | No malicious patterns detected; the code is a legitimate ERC-7739 message signing action from the viem library with no data exfiltration, obfuscation, or suspicious behavior. |
| _esm/experimental/erc7739/actions/signTypedData.js | safe | No malicious patterns detected |
| _esm/experimental/erc7739/decorators/erc7739.js | safe | No malicious patterns detected |
| _esm/experimental/erc7739/index.js | safe | This is a simple barrel file re-exporting modules; no malicious patterns were detected. |
| _esm/experimental/erc7739/types.js | safe | No malicious patterns detected |
| _esm/experimental/erc7739/utils/hashMessage.js | safe | No malicious patterns detected |
| _esm/experimental/erc7739/utils/hashTypedData.js | safe | No malicious patterns detected; the code is a straightforward ERC-7739 typed data hashing utility with no exfiltration, code execution, or suspicious behavior. |
| _esm/experimental/erc7739/utils/wrapTypedDataSignature.js | safe | No malicious patterns detected |
| _esm/experimental/erc7821/actions/execute.js | safe | No malicious patterns detected |
| _esm/experimental/erc7821/actions/executeBatches.js | safe | No malicious patterns detected; the code is a standard ERC-7821 batch execution action with no exfiltration, obfuscation, or suspicious behaviors. |
| _esm/experimental/erc7821/actions/supportsExecutionMode.js | safe | No malicious patterns detected |
| _esm/experimental/erc7821/constants.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/experimental/erc7821/decorators/erc7821.js | safe | No malicious patterns detected; the file is a thin, pure decorator wrapper around three local action modules with no external I/O, process spawning, or dynamic execution. |
| _esm/experimental/erc7821/errors.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/experimental/erc7821/index.js | safe | No malicious patterns detected |
| _esm/experimental/erc7821/utils/encodeCalls.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/experimental/erc7821/utils/encodeExecuteBatchesData.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/experimental/erc7821/utils/encodeExecuteData.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/experimental/erc7821/utils/getExecuteError.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/experimental/index.js | safe | No malicious patterns detected; this is a standard barrel export file for the viem library's experimental modules. |
| _esm/index.js | safe | No malicious patterns detected; this is a standard barrel export file for the viem Ethereum library. |
| _esm/linea/actions/estimateGas.js | safe | No malicious patterns detected; the file is a standard viem library action for estimating gas on the Linea chain with no exfiltration, credential harvesting, dynamic code execution, or suspicious network calls. |
| _esm/linea/chainConfig.js | safe | No malicious patterns detected |
| _esm/linea/chains.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/linea/index.js | safe | The file is a simple barrel export module with no executable code, network requests, or suspicious patterns. |
| _esm/linea/types/rpc.js | safe | No malicious patterns detected |
| _esm/node/index.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/node/trustedSetups.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/node/trustedSetups_cjs.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/nonce/index.js | safe | This is a simple ES module re-export barrel file with no executable logic, no dynamic imports, and no malicious patterns. |
| _esm/op-stack/abis.js | safe | No malicious patterns detected |
| _esm/op-stack/actions/buildDepositTransaction.js | safe | No malicious patterns detected |
| _esm/op-stack/actions/buildInitiateWithdrawal.js | safe | No malicious patterns detected; the file only prepares OP Stack withdrawal transaction parameters using standard library imports and no suspicious behavior. |
| _esm/op-stack/actions/buildProveWithdrawal.js | safe | No malicious patterns detected |
| _esm/op-stack/actions/depositTransaction.js | safe | No malicious patterns detected; the code is a legitimate viem library action for initiating Optimism deposit transactions. |
| _esm/op-stack/actions/estimateContractL1Fee.js | safe | No malicious patterns detected; the code is a standard viem library utility for estimating L1 fees with no suspicious behavior. |
| _esm/op-stack/actions/estimateContractL1Gas.js | safe | No malicious patterns detected; the file contains only standard gas estimation logic for Optimism stack contract interactions. |
| _esm/op-stack/actions/estimateContractTotalFee.js | safe | No malicious patterns detected in the estimateContractTotalFee utility function, which only performs ABI encoding and wraps a fee estimation call with error handling. |
| _esm/op-stack/actions/estimateContractTotalGas.js | safe | No malicious patterns detected; the code is a straightforward gas estimation utility with no data exfiltration, credential harvesting, obfuscation, or suspicious behavior. |
| _esm/op-stack/actions/estimateDepositTransactionGas.js | safe | No malicious patterns detected; the file contains a standard viem OP Stack action for estimating deposit transaction gas with no obfuscation, exfiltration, or dangerous operations. |
| _esm/op-stack/actions/estimateFinalizeWithdrawalGas.js | safe | No malicious patterns detected |
| _esm/op-stack/actions/estimateInitiateWithdrawalGas.js | safe | No malicious patterns detected |
| _esm/op-stack/actions/estimateL1Fee.js | safe | No malicious patterns detected; the code is a standard Ethereum L1 fee estimation function from the viem library with no suspicious behavior. |
| _esm/op-stack/actions/estimateL1Gas.js | safe | No malicious patterns detected; the code implements standard Ethereum L1 gas estimation using established library utilities without any suspicious behavior. |
| _esm/op-stack/actions/estimateProveWithdrawalGas.js | safe | No malicious patterns detected; the code is a standard gas estimation utility for OP Stack withdrawals with no exfiltration, credential harvesting, obfuscation, or suspicious behavior. |
| _esm/op-stack/actions/estimateTotalFee.js | safe | No malicious patterns detected; the code is a straightforward fee estimation utility for OP Stack transactions using standard viem actions. |
| _esm/op-stack/actions/estimateTotalGas.js | safe | No malicious patterns detected; the file only contains standard EIP-1559/OP Stack gas estimation logic with no exfiltration, obfuscation, or install-time execution. |
| _esm/op-stack/actions/finalizeWithdrawal.js | safe | No malicious patterns detected; the file contains standard viem library logic for finalizing OP Stack withdrawals via contract calls. |
| _esm/op-stack/actions/getGame.js | safe | No malicious patterns detected; the code is a straightforward viem op-stack action that filters dispute games and uses standard JavaScript constructs. |
| _esm/op-stack/actions/getGames.js | safe | This is a legitimate viem library module for reading Optimism dispute game data; no malicious patterns, external network calls, credential harvesting, or dynamic code execution were detected. |
| _esm/op-stack/actions/getL1BaseFee.js | safe | No malicious patterns detected |
| _esm/op-stack/actions/getL2Output.js | safe | No malicious patterns detected; the code is a standard viem OP Stack action for reading L2 output data via contract calls with no data exfiltration, credential harvesting, dynamic execution, or other security concerns. |
| _esm/op-stack/actions/getPortalVersion.js | safe | No malicious patterns detected; the code is a legitimate viem library helper for reading a Portal contract version. |
| _esm/op-stack/actions/getTimeToFinalize.js | safe | No malicious patterns detected; the code is a legitimate viem library function for computing withdrawal finalization time on OP Stack chains. |
| _esm/op-stack/actions/getTimeToNextGame.js | safe | No malicious patterns detected |
| _esm/op-stack/actions/getTimeToNextL2Output.js | safe | No malicious patterns detected; the file contains legitimate viem library code for querying L2 output timing. |
| _esm/op-stack/actions/getTimeToProve.js | safe | No malicious patterns detected; the code is a straightforward utility for computing OP Stack withdrawal prove timing. |
| _esm/op-stack/actions/getWithdrawalStatus.js | safe | No malicious patterns detected in the analyzed source file; it contains standard Optimism withdrawal status logic with no data exfiltration, credential harvesting, obfuscation, or process spawning. |
| _esm/op-stack/actions/initiateWithdrawal.js | safe | No malicious patterns detected |
| _esm/op-stack/actions/proveWithdrawal.js | safe | No malicious patterns detected; the code is a straightforward viem library action for proving L2 withdrawals on the OP Stack. |
| _esm/op-stack/actions/waitForNextGame.js | safe | No malicious patterns detected; the code is a legitimate viem op-stack action that polls for a dispute game using standard imports and no suspicious behavior. |
| _esm/op-stack/actions/waitForNextL2Output.js | safe | No malicious patterns detected; the code is a standard viem OP Stack action that polls for L2 output with no exfiltration, obfuscation, or process execution. |
| _esm/op-stack/actions/waitToFinalize.js | safe | No malicious patterns detected |
| _esm/op-stack/actions/waitToProve.js | safe | No malicious patterns detected; this file contains only legitimate OP Stack withdrawal proof logic using standard imports and async calls. |
| _esm/op-stack/chainConfig.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/op-stack/chains.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/op-stack/contracts.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/op-stack/decorators/publicL1.js | safe | No malicious patterns detected; the code is a straightforward action-binding module for OP Stack public actions. |
| _esm/op-stack/decorators/publicL2.js | safe | No malicious patterns detected |
| _esm/op-stack/decorators/walletL1.js | safe | No malicious patterns detected; the file contains a simple wallet action decorator that delegates to imported action functions. |
| _esm/op-stack/decorators/walletL2.js | safe | No malicious patterns detected |
| _esm/op-stack/errors/withdrawal.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/op-stack/formatters.js | safe | No malicious patterns detected; the file only contains pure formatting logic for OP Stack blockchain data. |
| _esm/op-stack/index.js | safe | This is a standard barrel file re-exporting OP Stack action modules with no executable code, no dynamic imports, and no suspicious patterns. |
| _esm/op-stack/parsers.js | safe | No malicious patterns detected; the code performs standard OP Stack deposit transaction parsing with pure functions and no network, filesystem, process, or dynamic execution behavior. |
| _esm/op-stack/serializers.js | safe | No malicious patterns detected; the code is a standard transaction serializer with input validation and no external data flows or dynamic execution. |
| _esm/op-stack/types/block.js | safe | No malicious patterns detected; the file only contains an empty export and a source map comment. |
| _esm/op-stack/types/chain.js | safe | No malicious patterns detected |
| _esm/op-stack/types/contract.js | safe | No malicious patterns detected |
| _esm/op-stack/types/deposit.js | safe | The file contains only an empty export and a sourceMappingURL comment, with no executable code or suspicious patterns. |
| _esm/op-stack/types/transaction.js | safe | No malicious patterns detected |
| _esm/op-stack/types/withdrawal.js | safe | The file is empty except for an export statement and a source map comment, with no executable code or suspicious patterns. |
| _esm/op-stack/utils/extractTransactionDepositedLogs.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/op-stack/utils/extractWithdrawalMessageLogs.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/op-stack/utils/getL2TransactionHash.js | safe | No malicious patterns detected; the code is a straightforward cryptographic utility for computing L2 transaction hashes with no external data exfiltration, dynamic code execution, or filesystem/network access. |
| _esm/op-stack/utils/getL2TransactionHashes.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/op-stack/utils/getSourceHash.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/op-stack/utils/getWithdrawalHashStorageSlot.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/op-stack/utils/getWithdrawals.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/op-stack/utils/opaqueDataToDepositData.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/siwe/index.js | safe | This is a simple re-export barrel file for SIWE (Sign-In with Ethereum) utilities with no malicious patterns, no side effects, and no dynamic code execution. |
| _esm/types/account.js | safe | No malicious patterns detected |
| _esm/types/block.js | safe | No malicious patterns detected; the file only contains an empty export and a source map comment. |
| _esm/types/calls.js | safe | No malicious patterns detected |
| _esm/types/chain.js | safe | No malicious patterns detected |
| _esm/types/contract.js | safe | No malicious patterns detected |
| _esm/types/eip1193.js | safe | No malicious patterns detected |
| _esm/types/eip4844.js | safe | No malicious patterns detected |
| _esm/types/ens.js | safe | No malicious patterns detected |
| _esm/types/fee.js | safe | No malicious patterns detected |
| _esm/types/filter.js | safe | No malicious patterns detected |
| _esm/types/kzg.js | safe | No malicious patterns detected in the provided empty JavaScript module. |
| _esm/types/log.js | safe | No malicious patterns detected |
| _esm/types/misc.js | safe | No malicious patterns detected |
| _esm/types/multicall.js | safe | No malicious patterns detected |
| _esm/types/proof.js | safe | No malicious patterns detected |
| _esm/types/rpc.js | safe | No malicious patterns detected |
| _esm/types/stateOverride.js | safe | The file contains only an empty export and a source map comment, with no executable or malicious code. |
| _esm/types/transaction.js | safe | No malicious patterns detected |
| _esm/types/transport.js | safe | No malicious patterns detected; the file contains only an empty export and a source map comment. |
| _esm/types/typedData.js | safe | The file contains only an empty export statement and a source map comment, with no executable code or suspicious patterns. |
| _esm/types/utils.js | safe | No malicious patterns detected |
| _esm/types/window.js | safe | No malicious patterns detected |
| _esm/types/withdrawal.js | safe | The file is empty except for an export statement and a source map comment, with no executable code or suspicious patterns. |
| _esm/utils/abi/decodeAbiParameters.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/abi/decodeDeployData.js | safe | No malicious patterns detected; the code is a legitimate ABI decoding utility with no network, filesystem, credential, or dynamic execution concerns. |
| _esm/utils/abi/decodeErrorResult.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/abi/decodeEventLog.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/abi/decodeFunctionData.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/abi/decodeFunctionResult.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/abi/encodeAbiParameters.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/abi/encodeDeployData.js | safe | No malicious patterns detected; the code is a straightforward ABI encoding utility with no network, filesystem, process, or dynamic execution behavior. |
| _esm/utils/abi/encodeErrorResult.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/abi/encodeEventTopics.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/abi/encodeFunctionData.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/abi/encodeFunctionResult.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/abi/encodePacked.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/abi/formatAbiItem.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/abi/formatAbiItemWithArgs.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/abi/getAbiItem.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/abi/parseEventLogs.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/abi/prepareEncodeFunctionData.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/address/getAddress.js | safe | No malicious patterns detected; the code implements standard EIP-55/EIP-1191 Ethereum address checksumming with only local caching and pure cryptographic hashing. |
| _esm/utils/address/getContractAddress.js | safe | No malicious patterns detected; the code is a clean Ethereum address derivation utility with no exfiltration, credential access, obfuscation, or dynamic execution. |
| _esm/utils/address/isAddress.js | safe | The code is a straightforward Ethereum address validation utility with LRU caching and no malicious patterns such as exfiltration, dynamic execution, or unauthorized file/network access. |
| _esm/utils/address/isAddressEqual.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/blob/blobsToCommitments.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/blob/blobsToProofs.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/blob/commitmentToVersionedHash.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/blob/commitmentsToVersionedHashes.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/blob/fromBlobs.js | safe | No malicious patterns detected; the code is a straightforward utility for converting blobs into hex or bytes data with no network, filesystem, process, or obfuscated behavior. |
| _esm/utils/blob/sidecarsToVersionedHashes.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/blob/toBlobSidecars.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/blob/toBlobs.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/buildRequest.js | safe | No malicious patterns detected; the code is a standard HTTP/RPC request builder with error mapping and retry logic. |
| _esm/utils/chain/assertCurrentChain.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/chain/defineChain.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/chain/extractChain.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/chain/getChainContractAddress.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/cursor.js | safe | No malicious patterns detected; the code is a standard binary cursor implementation with validation, error handling, and no external I/O or dangerous operations. |
| _esm/utils/data/concat.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/data/isBytes.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/data/isHex.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/data/pad.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/data/size.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/data/slice.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/data/trim.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/encoding/fromBytes.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/encoding/fromHex.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/encoding/toBytes.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/encoding/toHex.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/encoding/toRlp.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/ens/encodeLabelhash.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/ens/encodedLabelToLabelhash.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/ens/errors.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/ens/labelhash.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/ens/namehash.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/ens/normalize.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/ens/packetToBytes.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/errors/getCallError.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/errors/getContractError.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/errors/getEstimateGasError.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/errors/getNodeError.js | safe | No malicious patterns detected |
| _esm/utils/errors/getTransactionError.js | safe | No malicious patterns detected; the file only contains error-handling logic for transaction errors without any network, filesystem, or code execution risks. |
| _esm/utils/filters/createFilterRequestScope.js | safe | No malicious patterns detected; the code only maps filter IDs to transport request functions for scoped RPC calls. |
| _esm/utils/formatters/block.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/formatters/extract.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/formatters/feeHistory.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/formatters/formatter.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/formatters/log.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/formatters/proof.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/formatters/transaction.js | safe | No malicious patterns detected |
| _esm/utils/formatters/transactionReceipt.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/formatters/transactionRequest.js | safe | No malicious patterns detected; the file is a straightforward transaction request formatter with no network, file system, process spawning, or obfuscated code. |
| _esm/utils/getAction.js | safe | No malicious patterns detected |
| _esm/utils/hash/hashSignature.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/hash/isHash.js | safe | Cleared by Jev triage; no further analysis needed |
| _esm/utils/hash/keccak256.js | safe | Cleared by Jev triage; no further analysis needed |
Affected version ranges
None of the 2 scanned versions of viem are flagged high or critical. The latest scanned version, 2.47.0, is not scanned. Only versions we have scanned are listed; unscanned versions between them are not covered.
| Versions | Verdict | Count | Range | Top findings |
|---|---|---|---|---|
| 2.47.0 | Not scanned | 1 | 2.47.0 | |
| 2.23.2 โ 2.41.2 | Needs review | 2 | >=2.23.2 <=2.41.2 | Resource exhaustion / unbounded recursion; Unbounded JSON parsing from untrusted socket input |
Full list, including published versions not scanned yet: version ranges API.
Scanned versions of viem
Frequently asked questions
Is viem safe to use?
No confirmed malware was found in viem@2.23.2, but the review flagged 27 medium, 37 low severity findings for risky patterns worth checking before you rely on it.
Does viem contain malware?
No malware was identified in viem@2.23.2 when Togoder Security scanned it on Oct 4, 2026. A new version can still introduce malicious code, so scan the exact versions in your lockfile.
How was viem checked?
Togoder Security downloaded the published npm package and had an AI model read its 3209 source files, looking for install scripts, credential access, network exfiltration, obfuscation, backdoors and crypto-wallet theft. The results are cached by file hash and shown here.
How do I scan viem together with the rest of my dependencies?
Upload your lockfile at https://security.togoder.click/scan or call the API documented at https://security.togoder.click/api-docs. Files that have already been scanned, like the ones in viem@2.23.2, cost nothing.