[Cookiebot by Usercentrics - opens in a new window](https://www.cookiebot.com/en/what-is-behind-powered-by-cookiebot/?utm_source=banner_cb&utm_medium=referral&utm_content=v2)

- [Consent](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html)
- [Details](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html)
- [\[#IABV2SETTINGS#\]](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html)
- [About](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html)

This website uses cookies

We use cookies to understand how you use our site and to improve your experience. This includes personalizing content and advertising with the use of third-party business partners. To learn more, [click here](/content/privacy-policy ""/index.html).

\[#GPC\_BANNER\_ICON#\]

\[#GPC\_TOAST\_TEXT#\]

Consent Selection

**Necessary**

**Preferences**

**Statistics**

**Marketing**

[Show details](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html)

Details

- Necessary 66

Necessary cookies help make a website usable by enabling basic functions like page navigation and access to secure areas of the website. The website cannot function properly without these cookies.

- [Amazon\\
    2](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html) [Learn more about this provider

**cookies.js** Determines whether the visitor has accepted the cookie consent box. This ensures that the cookie consent box will not be presented again upon re-entry.

**Maximum Storage Duration**: Session**Type**: HTTP Cookie

**sp\_window\_session** Maintains the session for the embedded Spotify player to ensure it functions correctly during the current visit.

**Maximum Storage Duration**: Session**Type**: HTTP Cookie

- [Anchor FM\\
    4](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html) [Learn more about this provider

**\_\_Host-device\_id** Used by Spotify to identify the user’s device and enable secure authentication and playback of embedded Spotify content.

**Maximum Storage Duration**: Session**Type**: HTTP Cookie

**anchor-website#local-forage-detect-blob-support** Detects browser storage capabilities required for embedded Spotify podcast playback.

**Maximum Storage Duration**: Persistent**Type**: IndexedDB

**ES\|\|STORAGE\_ID** Stores a technical identifier required to manage local storage for embedded Spotify podcast playback.

**Maximum Storage Duration**: Persistent**Type**: HTML Local Storage

**ES\|s4p-hosted\|STORAGE\_ID** Stores a technical identifier required to manage local storage for embedded Spotify podcast playback.

**Maximum Storage Duration**: Persistent**Type**: HTML Local Storage

- [BrightTalk\\
    1](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html) [Learn more about this provider

**ga\_clientId** Used to send data to Google Analytics about the visitor's device and behavior. Tracks the visitor across devices and marketing channels.

**Maximum Storage Duration**: Persistent**Type**: HTML Local Storage

- [Businesswire\\
    3](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html) [Learn more about this provider

**ak\_bmsc** This cookie is used to distinguish between humans and bots. This is beneficial for the website, in order to make valid reports on the use of their website.

**Maximum Storage Duration**: 1 day**Type**: HTTP Cookie

**f5avraaaaaaaaaaaaaaaa\_session\_** Registers the website's speed and performance. This function can be used in context with statistics and load-balancing.

**Maximum Storage Duration**: Session**Type**: HTTP Cookie

**JSESSIONID** Preserves users states across page requests.

**Maximum Storage Duration**: Session**Type**: HTTP Cookie

- [Cookiebot\\
    1](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html) [Learn more about this provider

**CookieConsent** Stores the user's cookie consent state for the current domain

**Maximum Storage Duration**: 1 year**Type**: HTTP Cookie

- [Github\\
    2](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html) [Learn more about this provider

**\_gh\_sess** Preserves users states across page requests.

**Maximum Storage Duration**: Session**Type**: HTTP Cookie

**logged\_in** Registers whether the user is logged in. This allows the website owner to make parts of the website inaccessible, based on the user's log-in status.

**Maximum Storage Duration**: 1 year**Type**: HTTP Cookie

- [Google\\
    6](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html) [Learn more about this provider

Some of the data collected by this provider is for the purposes of personalization and measuring advertising effectiveness.

**\_ga \[x3\]** Used to send data to Google Analytics about the visitor's device and behavior. Tracks the visitor across devices and marketing channels.

**Maximum Storage Duration**: 2 years**Type**: HTTP Cookie

**\_gid \[x2\]** Used to send data to Google Analytics about the visitor's device and behavior. Tracks the visitor across devices and marketing channels.

**Maximum Storage Duration**: 1 day**Type**: HTTP Cookie

**\_GRECAPTCHA** This cookie is used to distinguish between humans and bots. This is beneficial for the website, in order to make valid reports on the use of their website.

**Maximum Storage Duration**: 180 days**Type**: HTTP Cookie

- [HubSpot\\
    6](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html) [Learn more about this provider

**rc::a** This cookie is used to distinguish between humans and bots. This is beneficial for the website, in order to make valid reports on the use of their website.

**Maximum Storage Duration**: Persistent**Type**: HTML Local Storage

**rc::b** This cookie is used to distinguish between humans and bots.

**Maximum Storage Duration**: Session**Type**: HTML Local Storage

**rc::c** This cookie is used to distinguish between humans and bots.

**Maximum Storage Duration**: Session**Type**: HTML Local Storage

**rc::f** This cookie is used to distinguish between humans and bots.

**Maximum Storage Duration**: Persistent**Type**: HTML Local Storage

**\_\_hs\_do\_not\_track** Stores the user's cookie consent state for the current domain

**Maximum Storage Duration**: 180 days**Type**: HTTP Cookie

**cookietest** This cookie is used to determine if the visitor has accepted the cookie consent box.

**Maximum Storage Duration**: Session**Type**: HTTP Cookie

- [LinkedIn\\
    2](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html) [Learn more about this provider

**bcookie** Used in order to detect spam and improve the website's security.

**Maximum Storage Duration**: 1 year**Type**: HTTP Cookie

**li\_gc** Stores the user's cookie consent state for the current domain

**Maximum Storage Duration**: 180 days**Type**: HTTP Cookie

- [Sonatype\\
    1](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html) [Learn more about this provider

**\_vwo\_consent** Stores the user’s cookie consent preferences for VWO to ensure that testing and tracking scripts are only executed in accordance with the user’s consent choices.

**Maximum Storage Duration**: Session**Type**: HTTP Cookie

- [Soundcloud\\
    1](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html) [Learn more about this provider

**datadome** Used in context with the website's BotManager. The BotManager detects, categorizes and compiles reports on potential bots trying to access the website.

**Maximum Storage Duration**: Session**Type**: HTTP Cookie

- [app.qualified.com\\
    \\
    js.qualified.com\\
    \\
    2](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html)

**\_\_cflb \[x2\]** Registers which server-cluster is serving the visitor. This is used in context with load balancing, in order to optimize user experience.

**Maximum Storage Duration**: 1 day**Type**: HTTP Cookie

- [assets.revsure.cloud\\
    6](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html)

**#.#-#-#-#-#.ack** Used to contain user’s survey and quiz answers in Local Storage.

**Maximum Storage Duration**: Persistent**Type**: HTML Local Storage

**#.#-#-#-#-#.inProgress** Used to contain user’s survey and quiz answers in Local Storage.

**Maximum Storage Duration**: Persistent**Type**: HTML Local Storage

**#.#-#-#-#-#.queue** Used to contain user’s survey and quiz answers in Local Storage.

**Maximum Storage Duration**: Persistent**Type**: HTML Local Storage

**#.#-#-#-#-#.reclaimEnd** Used to contain user’s survey and quiz answers in Local Storage.

**Maximum Storage Duration**: Persistent**Type**: HTML Local Storage

**#.#-#-#-#-#.reclaimStart** Used to contain user’s survey and quiz answers in Local Storage.

**Maximum Storage Duration**: Persistent**Type**: HTML Local Storage

**test\_rudder\_cookie** This cookie determines whether the browser accepts cookies.

**Maximum Storage Duration**: 1 year**Type**: HTTP Cookie

- [hsadspixel.net\\
    \\
    hs-banner.com\\
    \\
    hubspotusercontent.com\\
    \\
    hubspotusercontent-na1.net\\
    \\
    hubspotvideo.com\\
    \\
    linkedin.com\\
    \\
    twitter.com\\
    \\
    www.sonatype.com\\
    \\
    x.com\\
    \\
    19](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html)

**\_\_cf\_bm \[x19\]** This cookie is used to distinguish between humans and bots. This is beneficial for the website, in order to make valid reports on the use of their website.

**Maximum Storage Duration**: 1 day**Type**: HTTP Cookie

- [js.qualified.com\\
    1](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html)

**\_\_q\_state\_f3KQDBMfpPYzsDQe** Stores session state required for embedded Qualified chat functionality.

**Maximum Storage Duration**: 10 years**Type**: HTTP Cookie

- [ob.7roundprince.com\\
    4](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html)

**\_cq\_s** CHEQ cookies are used to protect websites, applications, and online services from bots, automated abuse, fraud, and other invalid or malicious activity.

**Maximum Storage Duration**: 7 days**Type**: HTTP Cookie

**\_cq\_session** CHEQ cookies are used to protect websites, applications, and online services from bots, automated abuse, fraud, and other invalid or malicious activity.

**Maximum Storage Duration**: 2 years**Type**: HTTP Cookie

**\_cq\_suid** This cookie is used to distinguish between humans and bots.

**Maximum Storage Duration**: Session**Type**: HTTP Cookie

**\_cq\_check** Determines whether the user has accepted the cookie consent box.

**Maximum Storage Duration**: Session**Type**: HTTP Cookie

- [obs.7roundprince.com\\
    1](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html)

**cg\_uuid** Necessary for the website security.

**Maximum Storage Duration**: 11 months**Type**: HTTP Cookie

- [widget.sndcdn.com\\
    1](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html)

**sc\_anonymous\_id** Used in context with the 3D-view-function on the website.

**Maximum Storage Duration**: 10 years**Type**: HTTP Cookie

- [ws.zoominfo.com\\
    1](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html)

**visitorId** Preserves users states across page requests.

**Maximum Storage Duration**: 1 year**Type**: HTTP Cookie

- [www.sonatype.com\\
    \\
    zoominfo.com\\
    \\
    2](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html)

**\_cfuvid \[x2\]** This cookie is a part of the services provided by Cloudflare - Including load-balancing, deliverance of website content and serving DNS connection for website operators.

**Maximum Storage Duration**: Session**Type**: HTTP Cookie

- Preferences 10

Preference cookies enable a website to remember information that changes the way the website behaves or looks, like your preferred language or the region that you are in.

- [Amazon\\
    3](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html) [Learn more about this provider

**reduxPersist%3AlocalStorage** Stores application state locally to ensure the proper functioning of embedded Spotify podcast playback.

**Maximum Storage Duration**: 7 days**Type**: HTTP Cookie

**reduxPersist%3Atutorial** Stores user interface state related to tutorial or guidance features for embedded Spotify podcast content.

**Maximum Storage Duration**: 7 days**Type**: HTTP Cookie

**reduxPersistIndex** Maintains website settings across multiple visits.

**Maximum Storage Duration**: 7 days**Type**: HTTP Cookie

- [Anchor FM\\
    2](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html) [Learn more about this provider

**anchor-website#keyvaluepairs** Stores configuration and state information to enable and manage embedded Spotify podcast playback.

**Maximum Storage Duration**: Persistent**Type**: IndexedDB

**com.spotify.single.item.cache:anchor-public-website** Caches podcast content data to enable reliable loading and playback of embedded Spotify episodes.

**Maximum Storage Duration**: Persistent**Type**: HTML Local Storage

- [HubSpot\\
    1](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html) [Learn more about this provider

**hubspot-modern-theme** Stores the user's HubSpot interface theme preference to provide a consistent visual experience across sessions.

**Maximum Storage Duration**: Persistent**Type**: HTML Local Storage

- [LinkedIn\\
    1](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html) [Learn more about this provider

**lidc** Registers which server-cluster is serving the visitor. This is used in context with load balancing, in order to optimize user experience.

**Maximum Storage Duration**: 1 day**Type**: HTTP Cookie

- [capture.navattic.com\\
    2](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html)

**nv\_visitor\_consent** Stores whether a visitor has already provided consent or identification information so they aren't repeatedly prompted. It supports the user experience rather than analytics or advertising. Navattic describes visitor cookies as enabling previously identified visitors to skip subsequent form fills when this optional feature is enabled.

**Maximum Storage Duration**: 180 days**Type**: HTTP Cookie

**theme-ui-color-mode** Remembers the user's preferences in terms of font size and colours on the website.

**Maximum Storage Duration**: Persistent**Type**: HTML Local Storage

- [js.qualified.com\\
    1](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html)

**\_\_q\_local\_form\_debug** Supports debugging and proper operation of embedded Qualified chat and form features.

**Maximum Storage Duration**: Persistent**Type**: HTML Local Storage

- Statistics 24

Statistic cookies help website owners to understand how visitors interact with websites by collecting and reporting information anonymously.

- [Amazon\\
    1](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html) [Learn more about this provider

**sp\_t** Collects anonymized usage data to measure performance and interactions with embedded Spotify podcast content.

**Maximum Storage Duration**: Session**Type**: HTTP Cookie

- [Anchor FM\\
    2](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html) [Learn more about this provider

**ES\|\|INSTALLATION\_ID** Assigns an installation identifier to support aggregated usage measurement for embedded Spotify podcast content.

**Maximum Storage Duration**: Persistent**Type**: HTML Local Storage

**ES\|s4p-hosted\|INSTALLATION\_ID** Assigns an installation identifier to support aggregated usage measurement for embedded Spotify podcast content.

**Maximum Storage Duration**: Persistent**Type**: HTML Local Storage

- [Github\\
    1](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html) [Learn more about this provider

**\_octo** Pending

**Maximum Storage Duration**: 1 year**Type**: HTTP Cookie

- [Google\\
    1](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html) [Learn more about this provider

Some of the data collected by this provider is for the purposes of personalization and measuring advertising effectiveness.

**\_ga\_#** Used to send data to Google Analytics about the visitor's device and behavior. Tracks the visitor across devices and marketing channels.

**Maximum Storage Duration**: 2 years**Type**: HTTP Cookie

- [HubSpot\\
    5](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html) [Learn more about this provider

**\_\_hssc** Identifies if the cookie data needs to be updated in the visitor's browser.

**Maximum Storage Duration**: 1 day**Type**: HTTP Cookie

**\_\_hssrc** Used to recognise the visitor's browser upon reentry on the website.

**Maximum Storage Duration**: Session**Type**: HTTP Cookie

**\_\_hstc** Sets a unique ID for the session. This allows the website to obtain data on visitor behaviour for statistical purposes.

**Maximum Storage Duration**: 180 days**Type**: HTTP Cookie

**hubspotutk** Sets a unique ID for the session. This allows the website to obtain data on visitor behaviour for statistical purposes.

**Maximum Storage Duration**: 180 days**Type**: HTTP Cookie

**hs-cta-interactions#cta** Tracks interactions with call-to-action elements to measure engagement through HubSpot.

**Maximum Storage Duration**: Persistent**Type**: IndexedDB

- [Sonatype\\
    1](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html) [Learn more about this provider

**\_vis\_opt\_exp\_#\_combi** Used by Visual Website Optimizer to ensure that the same user interface variant is displayed for each visit, if the user is participating in a design experiment.

**Maximum Storage Duration**: 100 days**Type**: HTTP Cookie

- [Soundcloud\\
    1](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html) [Learn more about this provider

**number(#)** Used to track user’s interaction with embedded content.

**Maximum Storage Duration**: Session**Type**: HTML Local Storage

- [VWO\\
    3](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html) [Learn more about this provider

**analyze** This cookie is used by the website’s operator in context with multi-variate testing. This is a tool used to combine or change content on the website. This allows the website to find the best variation/edition of the site.

**Maximum Storage Duration**: Session**Type**: Pixel Tracker

**collect/v.gif** Pending

**Maximum Storage Duration**: Session**Type**: Pixel Tracker

**l.gif** This cookie is used by the website’s operator in context with multi-variate testing. This is a tool used to combine or change content on the website. This allows the website to find the best variation/edition of the site.

**Maximum Storage Duration**: Session**Type**: Pixel Tracker

- [assets.revsure.cloud\\
    3](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html)

**rl\_anonymous\_id** Registers a unique ID for the visitor in order for the website to recognize the visitor upon re-entry.

**Maximum Storage Duration**: 1 year**Type**: HTTP Cookie

**rl\_page\_init\_referring\_domain** Stores the domain of the website that originally referred the visitor. Used for analytics and attribution to understand how visitors arrive at the site and measure traffic sources.

**Maximum Storage Duration**: 1 year**Type**: HTTP Cookie

**rl\_session** Sets a unique ID for the session. This allows the website to obtain data on visitor behaviour for statistical purposes.

**Maximum Storage Duration**: 1 year**Type**: HTTP Cookie

- [code.jscharting.com\\
    1](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html)

**Zotahoma, geneva, sans-seriftahoma, geneva, sans-serifmozilla/5.0 (windows nt 10.0; win64; x64) applewebkit/537.36 (khtml, like gecko) chrome/141.0.7390.37 safari/537.36** Stores browser characteristics to support visitor identification and analytics, including browser and device attributes used to improve measurement and distinguish unique visitors.

**Maximum Storage Duration**: Persistent**Type**: HTML Local Storage

- [js.navattic.com\\
    1](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html)

**nv\_uid** Assigns a pseudonymous identifier to measure engagement with interactive product walkthroughs via Navattic.

**Maximum Storage Duration**: 1 year**Type**: HTTP Cookie

- [js.qualified.com\\
    1](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html)

**\_\_q\_domainTest** Used in context with Account-Based-Marketing (ABM). The cookie registers data such as IP-addresses, time spent on the website and page requests for the visit. This is used for retargeting of multiple users rooting from the same IP-addresses. ABM usually facilitates B2B marketing purposes.

**Maximum Storage Duration**: Session**Type**: HTTP Cookie

- [obs.7roundprince.com\\
    1](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html)

**tracker/tc\_imp.gif** Collects data on the user’s navigation and behavior on the website. This is used to compile statistical reports and heatmaps for the website owner.

**Maximum Storage Duration**: Session**Type**: Pixel Tracker

- [ws.zoominfo.com\\
    2](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html)

**ziwsSession** Collects statistics on the user's visits to the website, such as the number of visits, average time spent on the website and what pages have been read.

**Maximum Storage Duration**: Session**Type**: HTML Local Storage

**ziwsSessionId** Collects statistics on the user's visits to the website, such as the number of visits, average time spent on the website and what pages have been read.

**Maximum Storage Duration**: Session**Type**: HTML Local Storage

- Marketing 60

Marketing cookies are used to track visitors across websites. The intention is to display ads that are relevant and engaging for the individual user and thereby more valuable for publishers and third party advertisers.

- [Meta Platforms, Inc.\\
    3](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html) [Learn more about this provider

**lastExternalReferrer** Detects how the user reached the website by registering their last URL-address.

**Maximum Storage Duration**: Persistent**Type**: HTML Local Storage

**lastExternalReferrerTime** Detects how the user reached the website by registering their last URL-address.

**Maximum Storage Duration**: Persistent**Type**: HTML Local Storage

**\_fbp** Used by Facebook to deliver a series of advertisement products such as real time bidding from third party advertisers.

**Maximum Storage Duration**: 3 months**Type**: HTTP Cookie

- [6sc.co\\
    1](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html)

**6suuid** Registers user behaviour and navigation on the website, and any interaction with active campaigns. This is used for optimizing advertisement and for efficient retargeting.

**Maximum Storage Duration**: 400 days**Type**: HTTP Cookie

- [Anchor FM\\
    1](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html) [Learn more about this provider

**sp\_tr** Tracks user interactions across Spotify services to support advertising measurement and campaign attribution.

**Maximum Storage Duration**: Session**Type**: HTTP Cookie

- [Google\\
    6](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html) [Learn more about this provider

Some of the data collected by this provider is for the purposes of personalization and measuring advertising effectiveness.

**IDE** Used by Google DoubleClick to register and report the website user's actions after viewing or clicking one of the advertiser's ads with the purpose of measuring the efficacy of an ad and to present targeted ads to the user.

**Maximum Storage Duration**: 400 days**Type**: HTTP Cookie

**test\_cookie** Pending

**Maximum Storage Duration**: 1 day**Type**: HTTP Cookie

**pagead/1p-conversion/#/** Tracks the conversion rate between the user and the advertisement banners on the website - This serves to optimise the relevance of the advertisements on the website.

**Maximum Storage Duration**: Session**Type**: Pixel Tracker

**pagead/1p-user-list/#** Tracks if the user has shown interest in specific products or events across multiple websites and detects how the user navigates between sites. This is used for measurement of advertisement efforts and facilitates payment of referral-fees between websites.

**Maximum Storage Duration**: Session**Type**: Pixel Tracker

**\_gcl\_au** Used to measure the efficiency of the website’s advertisement efforts, by collecting data on the conversion rate of the website’s ads across multiple websites.

**Maximum Storage Duration**: 3 months**Type**: HTTP Cookie

**\_gcl\_ls** Tracks the conversion rate between the user and the advertisement banners on the website - This serves to optimise the relevance of the advertisements on the website.

**Maximum Storage Duration**: Persistent**Type**: HTML Local Storage

- [HubSpot\\
    4](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html) [Learn more about this provider

**\_\_hmpl** Collects information on user preferences and/or interaction with web-campaign content - This is used on CRM-campaign-platform used by website owners for promoting events or products.

**Maximum Storage Duration**: Session**Type**: HTML Local Storage

**\_\_ptq.gif** Sends data to the marketing platform Hubspot about the visitor's device and behaviour. Tracks the visitor across devices and marketing channels.

**Maximum Storage Duration**: Session**Type**: Pixel Tracker

**HUBLYTICS\_EVENTS\_53 \[x2\]** Collects data on visitor behaviour from multiple websites, in order to present more relevant advertisement - This also allows the website to limit the number of times that they are shown the same advertisement.

**Maximum Storage Duration**: Session**Type**: HTML Local Storage

- [Microsoft\\
    8](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html) [Learn more about this provider

**\_uetsid** Used to track visitors on multiple websites, in order to present relevant advertisement based on the visitor's preferences.

**Maximum Storage Duration**: Persistent**Type**: HTML Local Storage

**\_uetsid\_exp** Contains the expiry-date for the cookie with corresponding name.

**Maximum Storage Duration**: Persistent**Type**: HTML Local Storage

**\_uetvid** Used to track visitors on multiple websites, in order to present relevant advertisement based on the visitor's preferences.

**Maximum Storage Duration**: Persistent**Type**: HTML Local Storage

**\_uetvid\_exp** Contains the expiry-date for the cookie with corresponding name.

**Maximum Storage Duration**: Persistent**Type**: HTML Local Storage

**MR** Used to track visitors on multiple websites, in order to present relevant advertisement based on the visitor's preferences.

**Maximum Storage Duration**: 7 days**Type**: HTTP Cookie

**MUID** Used widely by Microsoft as a unique user ID. The cookie enables user tracking by synchronising the ID across many Microsoft domains.

**Maximum Storage Duration**: 1 year**Type**: HTTP Cookie

**\_uetsid** Collects data on visitor behaviour from multiple websites, in order to present more relevant advertisement - This also allows the website to limit the number of times that they are shown the same advertisement.

**Maximum Storage Duration**: 1 day**Type**: HTTP Cookie

**\_uetvid** Used to track visitors on multiple websites, in order to present relevant advertisement based on the visitor's preferences.

**Maximum Storage Duration**: 1 year**Type**: HTTP Cookie

- [Reddit\\
    3](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html) [Learn more about this provider

**rp.gif** Necessary for the implementation of the Reddit.com's share-button function.

**Maximum Storage Duration**: Session**Type**: Pixel Tracker

**\_rdt\_uuid \[x2\]** Used to track visitors on multiple websites, in order to present relevant advertisement based on the visitor's preferences.

**Maximum Storage Duration**: 3 months**Type**: HTTP Cookie

- [Sonatype\\
    14](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html) [Learn more about this provider

**\_vis\_opt\_s** Used by Visual Website Optimizer to determine if the visitor is participating in a design experiment.

**Maximum Storage Duration**: 100 days**Type**: HTTP Cookie

**\_vis\_opt\_test\_cookie** Used to check if the user's browser supports cookies.

**Maximum Storage Duration**: Session**Type**: HTTP Cookie

**\_vwo\_ds** Collects data on the user's visits to the website, such as the number of visits, average time spent on the website and what pages have been loaded with the purpose of generating reports for optimising the website content.

**Maximum Storage Duration**: 2 months**Type**: HTTP Cookie

**\_vwo\_sn** Collects statistics on the visitor's visits to the website, such as the number of visits, average time spent on the website and what pages have been read.

**Maximum Storage Duration**: 1 day**Type**: HTTP Cookie

**\_vwo\_uuid** Used by Visual Website Optimizer to ensure that the same user interface variant is displayed for each visit, if the user is participating in a design experiment.

**Maximum Storage Duration**: 1 year**Type**: HTTP Cookie

**\_vwo\_uuid\_v2** This cookie is set to make split-tests on the website, which optimizes the website's relevance towards the visitor – the cookie can also be set to improve the visitor's experience on a website.

**Maximum Storage Duration**: 1 year**Type**: HTTP Cookie

**\_vwo\_584728\_config** Stores configuration settings for VWO to support website analytics and optimization testing.

**Maximum Storage Duration**: Persistent**Type**: HTML Local Storage

**\_vwo\_eventHist** Stores visitor event history data used by VWO for analytics, A/B testing, and website optimization.

**Maximum Storage Duration**: Persistent**Type**: HTML Local Storage

**\_vwo\_eventHistLastSession** Used by VWO to retain event interaction history from the user’s last browsing session to support analytics and experiment continuity.

**Maximum Storage Duration**: Persistent**Type**: HTML Local Storage

**\_vwo\_eventHistSession** Used by VWO to track visitor interactions and experiment events within a browsing session.

**Maximum Storage Duration**: Persistent**Type**: HTML Local Storage

**\_vwo\_nls\_q\_#** Collects data on user interactions to support website analytics and optimization testing through VWO.

**Maximum Storage Duration**: Persistent**Type**: HTML Local Storage

**\_vwo\_nlsCache** Stores cached visitor session and optimization data used by VWO to improve experiment performance and reduce repeated data processing.

**Maximum Storage Duration**: Persistent**Type**: HTML Local Storage

**\_vwo\_visProps** Used by VWO to retain visitor attributes and properties for analytics, A/B testing, and experiment targeting purposes.

**Maximum Storage Duration**: Persistent**Type**: HTML Local Storage

**vwoSn** This cookie is set to make split-tests on the website, which optimizes the website's relevance towards the visitor – the cookie can also be set to improve the visitor's experience on a website.

**Maximum Storage Duration**: Persistent**Type**: HTML Local Storage

- [Soundcloud\\
    2](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html) [Learn more about this provider

**dd\_testcookie** Pending

**Maximum Storage Duration**: Session**Type**: HTTP Cookie

**ddSession\_datadome** Pending

**Maximum Storage Duration**: Persistent**Type**: HTML Local Storage

- [TechTarget\\
    1](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html) [Learn more about this provider

**a/gif.gif** Used by Informa TechTarget to measure interactions with marketing content, identify website visitors, and support campaign attribution and lead generation.

**Maximum Storage Duration**: Session**Type**: Pixel Tracker

- [Twitter Inc.\\
    1](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html) [Learn more about this provider

**i/jot/embeds** Used by X (formerly Twitter) to support embedded content and to measure and personalize advertising and user interactions across websites.

**Maximum Storage Duration**: Session**Type**: Pixel Tracker

- [VWO\\
    2](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html) [Learn more about this provider

**s.gif** Registers user behaviour and navigation on the website, and any interaction with active campaigns. This is used for optimizing advertisement and for efficient retargeting.

**Maximum Storage Duration**: Session**Type**: Pixel Tracker

**vwo\_apm\_sent** Used by VWO to manage application performance monitoring and prevent duplicate performance data submissions.

**Maximum Storage Duration**: Persistent**Type**: HTML Local Storage

- [assets.revsure.cloud\\
    6](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html)

**\_\_tld\_\_** Used to track visitors on multiple websites, in order to present relevant advertisement based on the visitor's preferences.

**Maximum Storage Duration**: Session**Type**: HTTP Cookie

**rl\_group\_id** Collects data on visitors' behaviour and interaction - This is used to optimize the website and make advertisement on the website more relevant.

**Maximum Storage Duration**: 1 year**Type**: HTTP Cookie

**rl\_group\_trait** Collects data on visitors' behaviour and interaction - This is used to optimize the website and make advertisement on the website more relevant.

**Maximum Storage Duration**: 1 year**Type**: HTTP Cookie

**rl\_page\_init\_referrer** Registers how the user has reached the website to enable pay-out of referral commission fees to partners.

**Maximum Storage Duration**: 1 year**Type**: HTTP Cookie

**rl\_trait** Collects data on visitors' behaviour and interaction - This is used to optimize the website and make advertisement on the website more relevant.

**Maximum Storage Duration**: 1 year**Type**: HTTP Cookie

**rl\_user\_id** Sets a unique ID for the visitor, that allows third party advertisers to target the visitor with relevant advertisement. This pairing service is provided by third party advertisement hubs, which facilitates real-time bidding for advertisers.

**Maximum Storage Duration**: 1 year**Type**: HTTP Cookie

- [b.6sc.co\\
    1](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html)

**v1/beacon/img.gif** Used in context with Account-Based-Marketing (ABM). The cookie registers data such as IP-addresses, time spent on the website and page requests for the visit. This is used for retargeting of multiple users rooting from the same IP-addresses. ABM usually facilitates B2B marketing purposes.

**Maximum Storage Duration**: Session**Type**: Pixel Tracker

- [j.6sc.co\\
    5](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html)

**\_6senseCompanyDetails** Used in context with Account-Based-Marketing (ABM). The cookie registers data such as IP-addresses, time spent on the website and page requests for the visit. This is used for retargeting of multiple users rooting from the same IP-addresses. ABM usually facilitates B2B marketing purposes.

**Maximum Storage Duration**: Persistent**Type**: HTML Local Storage

**\_an\_uid** Presents the user with relevant content and advertisement. The service is provided by third-party advertisement hubs, which facilitate real-time bidding for advertisers.

**Maximum Storage Duration**: 7 days**Type**: HTTP Cookie

**\_gd\_session** Collects visitor data related to the user's visits to the website, such as the number of visits, average time spent on the website and what pages have been loaded, with the purpose of displaying targeted ads.

**Maximum Storage Duration**: 1 day**Type**: HTTP Cookie

**\_gd\_svisitor** Collects visitor data related to the user's visits to the website, such as the number of visits, average time spent on the website and what pages have been loaded, with the purpose of displaying targeted ads.

**Maximum Storage Duration**: 2 years**Type**: HTTP Cookie

**\_gd\_visitor** Collects visitor data related to the user's visits to the website, such as the number of visits, average time spent on the website and what pages have been loaded, with the purpose of displaying targeted ads.

**Maximum Storage Duration**: 2 years**Type**: HTTP Cookie

- [ob.7roundprince.com\\
    2](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html)

**\_cq\_tuid** Collects data on visitors. This information is used to assign visitors into segments, making website advertisement more efficient.

**Maximum Storage Duration**: Session**Type**: HTML Local Storage

**\_cq\_duid** Used by the website to protect against fraud in relation to its referral system.

**Maximum Storage Duration**: 3 months**Type**: HTTP Cookie

- Unclassified 0

Unclassified cookies are cookies that we are in the process of classifying, together with the providers of individual cookies.

- We do not use cookies of this type.

[Cross-domain consent\[#BULK\_CONSENT\_DOMAINS\_COUNT#\]](/content/blog/nexus-intelligence-insights-sonatype-2018-0413#/index.html)

\[#BULK\_CONSENT\_TITLE#\]

List of domains your consent applies to: \[#BULK\_CONSENT\_DOMAINS#\]

Cookie declaration last updated on 7/20/26 by [Cookiebot](https://www.cookiebot.com/)

\[#IABV2\_TITLE#\]

\[#IABV2\_BODY\_INTRO#\]

\[#IABV2\_BODY\_LEGITIMATE\_INTEREST\_INTRO#\]

\[#IABV2\_BODY\_PREFERENCE\_INTRO#\]

\[#IABV2\_LABEL\_PURPOSES#\]

\[#IABV2\_BODY\_PURPOSES\_INTRO#\]

\[#IABV2\_BODY\_PURPOSES#\]

\[#IABV2\_LABEL\_FEATURES#\]

\[#IABV2\_BODY\_FEATURES\_INTRO#\]

\[#IABV2\_BODY\_FEATURES#\]

\[#IABV2\_LABEL\_PARTNERS#\]

\[#IABV2\_BODY\_PARTNERS\_INTRO#\]

\[#IABV2\_BODY\_PARTNERS#\]

About

Cookies are small text files that can be used by websites to make a user's experience more efficient.

The law states that we can store cookies on your device if they are strictly necessary for the operation of this site. For all other types of we need your permission.

This site uses different types of cookies. Some cookies are placed by third party services that appear on our pages.

You can at any time change or withdraw your consent from the Cookie Declaration on our website.

Learn more about who we are, how you can contact us and how we process personal data in our [Privacy Policy](/content/privacy-policy ""/index.html).

**Do not sell or share my personal information**

Allow allCustomize

Allow selectionReject Cookies

# Sonatype Intelligence Insights: Sonatype-2018-0413, flatmap-stream's Back, Back Again

**August 20, 2019**
By [Elisa Velarde](/content/blog/author/elisa-velarde/index.html)

7 minute read time

_**Thought you cleaned up your malicious flatmap-stream code? Check again.**_

You may have thought you'd read everything you had to read about flatmap-stream and then fixed the offending component once and for all. However, after a deeper inspection of embedded components potentially still in use, the Sonatype Data Research team has uncovered a different reality.

The situation is similar. Imagine if a large meat manufacturer shipped a bunch of bad beef recalled. They've cleaned up their act and gotten rid of the tainted product from all their manufacturing and packaging plants. However, the meat they sold to Picabe Burgers months ago has been formed into hamburgers and stored in the freezer, ready to be cooked and sold in the coming weeks. The meat manufacturer is no longer "vulnerable," but you, the consumer, could be exposed or "exploited" by what remains.

In this month's Sonatype Intelligence Insights, we'll take a deeper dive into additional vector points that are at risk from the original flatmap-stream vulnerability, something we at Sonatype call secondary expansion, and give remediation guidance on what to do next.

**Name of Vuln/Sonatype ID:** **Sonatype-2018-0413**

**Type of vulnerability:** Malicious code injection

**Components affected:**

- @eyedea-sockets/messenger-bot  0.0.4

- @eyedea-sockets/syncano-socket-intercom-integration 0.0.11

- apollo-discover-resolvers 1.0.2

- framework-data 9.7.1

- generator-ozone-be 1.0.39

- generator-ozone-be 1.0.41

- generator-ozone-be 1.0.42

- generator-ozone-be 1.0.43

- generator-ozone-be 1.0.44

- generator-ozone-be 1.0.45

- generator-ozone-be 1.0.46

- generator-ozone-be 1.0.47

- hellhun\_homelibrary 1.0.0

- hellhun\_homelibrary 1.0.1

- koa-swapi 1.1.3

- moab-mother 1.3.0

- node-antivir 1.0.0

- ocad2geojson 1.1.0

- ocad2geojson 1.2.0

- ocad2geojson 1.2.1

- ocad2geojson 1.2.2

- ocad2geojson 1.2.3

- pux-react 0.0.0

- sdk-flags 1.0.3

**Vulnerability description:**

First, let's take a step back in time to November 2018. A malicious user modified [event-stream to depend](/content/blog/open-source-software-is-under-attack-new-event-stream-hack-is-latest-proof/index.html) on a malicious package called [flatmap-stream](https://github.com/hugeglass/flatmap-stream). This package was specifically crafted for a very specialized and purposeful attack. The malicious user was only interested in harvesting cryptocurrency from applications that performed that type of payment task.

Flash forward to today, and bundled node modules open up potential vectors in additional 12 components.

**Attack Mechanics, other vectors:**

It's important to understand the potential scale of any vulnerability related to this set of components. The event-stream package alone receives over 1.5M weekly downloads and is depended on by nearly **1,600 other packages**. If this attack had _not_ been specific to [harvesting cryptocurrency](/content/blog/malicious-code-injection-strikes-again-as-npm-foils-13m-cryptocurrency-theft/index.html), the consequences could have been dire for thousands of applications that depend on them. The embedded components bundled into flatmap-stream pose a serious risk given their general utility.

**The results of the analysis performed by the Sonatype Data Security Research team:**

First, a little about secondary expansion. Our proprietary system for identifying vulnerable code (or in this case malicious code) uses Advanced Binary Fingerprinting (ABF). The result is precise identification of embedded dependencies that reflect everything implicated. ABF identification uses cryptographic hash for binaries, structural similarity, derived coordinate, and file name. It can even identify renamed or modified components, whether they were declared or not, misnamed, or added to the code base manually.

Using this method, our team discovered twelve additional npm components that carry the same payload as the one responsible for the **first event-stream vulnerability**.

|     |     |
| --- | --- |
| **Component Name** | **Usage or Purpose** |
| **@eyedea-sockets/messenger-bot** | Syncano Socket for Facebook messenger-bot |
| **@eyedea-sockets/syncano-socket-intercom-integration** | Syncano Socket for intercom integration |
| **apollo-discover-resolvers** | A helper to import GraphQL resolvers and build resolver object for an Apollo Server |
| **framework-data** | Framework to calculate Zillow _zestimates_ |
| **generator-ozone-be** | Creates express-js app with jest bundled along with lint and pre-commit hooks configured |
| **hellhun\_homelibrary** | A sample auction app to demonstrate the capabilities of Gulp |
| **koa-swapi** | Router for Koa |
| **moab-mother** | Mother of all traders (the ReadMe is in Dutch and the purpose of the package is not apparent) |
| **node-antivir** | No information available |
| **ocad2geojson** | Converts OCAD files to GeoJSON |
| **pux-react** | A sample web app using React |
| **sdk-flags** | SDK for Flags |

**Digging deeper, we examine what's vulnerable:**

Ten of the twelve components come bundled with a \`node\_modules\` folder that contains one of the malicious versions of \`flatmap-stream\` (the module included in \`event-stream\` that contained Bitcoin-siphoning malware). Of the ten, three components get more interesting.

\`@eyedea-sockets/messenger-bot\` and \`@eyedea-sockets/syncano-socket-intercom-integration\` have the \`node\_modules\` folder archived in a hidden folder while \`pux-react\` has the payload embedded in an inner-archive ~115 levels deep. The Sonatype Data Security Research team believes this may be an attempt to evade antivirus and malware scanners that typically only scan archives a few layers deep.

\`node-antivir\` has a slightly different m.o., but is as suspicious nonetheless. It contains the malicious payload and nothing else. This component could have potentially acted as another dependency on the \`event-stream\` or other similar libraries to pull off the cryptocurrency hack. npm shows a low number of downloads of this library around the time that the event-stream/flatmap-stream attack was going on. It has since fizzled out and currently shows no dependents for this component.

By doing a granular component analysis to discover what's been embedded or hidden in the code, Sonatype has created a composite risk view of these components - giving our customers a substantial head start on getting ahead of threats that most open source security vendors will not discover until there's a breach. This in-depth research and predictive analysis gives our customers using these vulnerable components a holistic risk profile they can use to drive policy.

**Remediation Recommendation:**

In order to be good citizens of the open source community, our Data Security Research Team has reached out to npm to inform them of our findings. npm has promptly responded and are working on fixes for the impacted components. We appreciate their rapid response and will assist where we can.

Any applications running these packages should be investigated for malicious activity and replaced with a safe version not containing the malicious code.

[DevOps](/content/resources/articles/what-is-devops/index.html)-native organizations with the ability to continuously deploy software releases have an automation advantage that allows them to stay one step ahead of the hackers. Customers of [Sonatype Nexus Repository](/content/products/sonatype-nexus-repository/index.html) were notified of Sonatype-2018-0413 within hours of the project being notified. Their development teams automatically received instructions on how to remediate the risk.

If you're not a Sonatype customer and want to find out if your code is vulnerable, you can use the free [**Sonatype Vulnerability Scanner**](/content/solutions/vulnerability-management-tools/index.html) to quickly find out.

Visit the [**Sonatype Intelligence Insights**](/content/products/intelligence/index.html) page for a deep dive into other vulnerabilities like this one, or subscribe to the blog to automatically receive Nexus Intelligence Insights hot off the press.

Written by **Elisa Velarde**

Elisa was a Senior Product Marketing Manager at Sonatype. She brought over 10 years of experience in sourcing, mentoring, and leading Marketing or full Agile product teams while maintaining a collaborative, cross-departmental approach to support company goals.

[Explore All Posts by Elisa Velarde](/content/blog/author/elisa-velarde/index.html)

Tags

vulnerabilitiesNexus Intelligence Insightsembedded malicious codeSonatype-2018-0413flatmap-stream

## Related Resources

Blog Post

### [What Is Grounding? Why AI Coding Assistants Need Better Intelligence](/content/blog/what-is-grounding-why-ai-coding-assistants-need-better-intelligence "Internal link to What Is Grounding? Why AI Coding Assistants Need Better Intelligence blog post"/index.html)

Read More

Blog Post

### [Open Source, Open Infrastructure, and the Space Between](/content/blog/open-source-open-infrastructure-and-the-space-between "Internal link to Open Source, Open Infrastructure, and the Space Between blog post"/index.html)

Read More

Blog Post

### [Request for Comments: CARE, Emergency Remediation, and Maven Central](/content/blog/request-for-comments-care-and-maven-central "Internal link to Request for Comments: CARE, Emergency Remediation, and Maven Central blog post"/index.html)

Read More

>

Twitter Widget Iframe
