The policy of crates.io has always been to remove any malicious packages discovered. Iâve already said this in this thread, in fact, but this conversation is circular and endless.
âTyposquattingâ is not even the same thing as âsquattingâ and is poorly named. Unlike a âsquattedâ package, there is a package behind the âtyposquattedâ name, a package with code in it. Itâs malicious code is what it is, which is why the admins will remove it. This isnât rocket science.