eBay / eBay/figma-include-accessibility-annotations

[BUG] Vulert claims "Malicious code in figma-include-accessibility-annotations (npm)"

Open
#50 0 comments 0 reactions 2 assignees View on GitHub

@megan-woodruff is already working on this.

Since May 12, 2025.

bug
Dominant language
JavaScript
Stars
101
Forks
14
Avg merge
8m
Merged PRs (30d)
1

Description

Details

My organization will not approve the usage of this plugin because www.vulert.com says it contains malicious code:

https://vulert.com/vuln-db/npm-figma-include-accessibility-annotations-121407

Do you have any background on this issue, or anything I can share with my org to ease their concerns?

Expected Behavior

There should not be any malicious code

Actual Behavior

Apparently, someone thinks there is malicious code

Additional Info
Your Environment
  • Operating System and version (desktop or mobile):
  • Link to your project and/or Figma file:
Steps to Reproduce
  1. first...
Stack Trace

Contributor guide

Open the contributing guide

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.