No static findings, standard files for the well-known colors library, clean sandbox install. No evidence of malice.
AI breakdown
Plain-English summary of what this package does and how it behaves.
The 'colors' package adds ANSI color and style support to Node.js console output, with theme maps, safe mode, and optional string prototype extension.
Capabilities
- Adds colors and styles to console strings
- Provides theme maps (rainbow, zebra, america, random)
- Includes safe.js to avoid prototype extension
- Supports custom styles and traps
- Runs tests via npm test script
Data access
- Console output
- None observed
Network
- No network access observed
Standard console formatting utility with zero dependencies and no install-time scripts; risk is limited to typical use of string styling in a Node.js environment.
Files in package (42)
How ShadowCanopy checks npm packages
ShadowCanopy blocks every dependency by default and only lets through what it can verify — against live malicious-package advisories, an AI behavior scan, and a byte-for-byte hash check. It protects installs across npm, PyPI, crates.io, pkg.go.dev, RubyGems, Maven Central, NuGet, Packagist, Hex, pub.dev, Swift Package Manager.
This report reflects ShadowCanopy's threat intelligence at page load and is informational, not a warranty. Canonical URL: https://shadowcanopy.dev/packages/npm/colors