eBay / eBay/figma-include-accessibility-annotations
[BUG] Vulert claims "Malicious code in figma-include-accessibility-annotations (npm)"
Open
@megan-woodruff is already working on this.
Since May 12, 2025.
bug
- Dominant language
- JavaScript
- Stars
- 101
- Forks
- 14
- Avg merge
- 8m
- Merged PRs (30d)
- 1
Description
Details
My organization will not approve the usage of this plugin because www.vulert.com says it contains malicious code:
https://vulert.com/vuln-db/npm-figma-include-accessibility-annotations-121407
Do you have any background on this issue, or anything I can share with my org to ease their concerns?
Expected Behavior
There should not be any malicious code
Actual Behavior
Apparently, someone thinks there is malicious code
Additional Info
Your Environment
- Operating System and version (desktop or mobile):
- Link to your project and/or Figma file:
Steps to Reproduce
- first...
Stack Trace
Contributor guide
First steps
- Read the whole issue, then the project's contributing guide.
- Comment on the issue to say you are picking it up — it saves two people doing the same work.
- Fork the repository and make your change on a branch.
- Open a pull request that references the issue number.
Assessment
This issue has not been assessed yet.