# gzup-react-image-file-resizer@1.0.0 — Threat Briefing Critical risk — threat briefing for npm package gzup-react-image-file-resizer@1.0.0. Capabilities, risk paths, and what to check. - **Ecosystem:** npm - **Latest version:** 1.0.0 - **License:** MIT ## Risk - **Level:** critical - **Summary:** Package name too similar to react-image-file-resizer (0.1M weekly downloads) ## Capability Summary | Capability | Level | |---|---| | install scripts | none | | network access | none | | filesystem | none | | shell execution | none | ## Key Signals - **** ## Maintainer ## Recommended Action Do not install. Review immediately if already in use.