RDS + crew have been promoting https://anonup.com/guest heavily so after checking it out, there are JS calls being made in a vendor folder and loading a custom module. source code doesn't match any version of the package found on npm
It has capabilities to grab MAC addresses, IPs, FTP urls