Esta versión incluye datos personales por error. Actualizá: npm i -g @agentprojectcontext/apx@latest
APX — unified CLI + daemon for the Agent Project Context (APC) standard.
LPM treats this as warn-only first-party agent extension lifecycle risk. The npm postinstall hook installs package-owned agent skills into global skill directories. This creates an automatic agent-extension lifecycle capability, but inspected code does not establish a concrete attack.
Package defines install-time lifecycle scripts.
package.jsonView on unpkgInstall-time lifecycle script is not statically allowlisted and needs review.
package.jsonView on unpkgPackage source references child process execution.
src/core/artifacts/tunnel.jsView on unpkg · L12Package source invokes a package manager install command at runtime.
src/core/artifacts/tunnel.jsView on unpkg · L6Source file is highly similar to a previously finalized malicious package; route for source-aware review.
src/core/net/tailscale.jsView on unpkgPackage source references a known benign dynamic code generation pattern.
src/core/http-tools/browser.jsView on unpkg · L730Package source references dynamic require/import behavior.
src/core/voice/transcription.js#virtual:normalized:round1View on unpkg · L52Package source references weak cryptographic algorithms.
src/core/channels/whatsapp/stickers.jsView on unpkg · L36A manifest entrypoint or package-local install chain reaches persistence behavior.
src/core/desktop/autostart.jsView on unpkg · L7Source file is highly similar to a previously finalized malicious package; route for source-aware review.
src/core/desktop/autostart.jsView on unpkgA single source file combines environment access, network access, and code or shell execution; review context before blocking.
src/interfaces/cli/http.jsView on unpkg · L7Source file is highly similar to a previously finalized malicious package; route for source-aware review.
src/interfaces/cli/http.jsView on unpkgPackage ships non-JavaScript build or shell helper files.
src/host/daemon/pty-bridge.pyView on unpkgPackage ships compressed or archive-like blobs.
src/interfaces/web/dist/sw.js.gzView on unpkgPackage ships high-entropy non-source blobs.
src/interfaces/web/dist/modules/blobs/onyx.svg.brView on unpkgA bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
src/core/agent/shell/background.js#virtual:normalized:round1View on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/host/daemon/api/admin.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/core/agent/shell/background.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/core/desktop/process.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/core/voice/engines/gemini.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/host/daemon/deck-exec.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/host/daemon/terminal-ws.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/host/daemon/whisper-server.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/interfaces/cli/commands/artifact.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/interfaces/cli/commands/code.jsView on unpkgThis report applies to @agentprojectcontext/apx@1.118.0.
See version security history for other recorded verdicts.
Evidence last updated: .
Source writes installer persistence such as shell profile or service configuration.
src/core/desktop/autostart.jsView on unpkg · L7Package defines install-time lifecycle scripts.
package.jsonView on unpkg · L49Install-time lifecycle script is not statically allowlisted and needs review.
package.jsonView on unpkg · L49Package source references dynamic require/import behavior.
src/core/voice/transcription.js#virtual:normalized:round1View on unpkg · L52A single source file combines environment access, network access, and code or shell execution; review context before blocking.
src/interfaces/cli/http.jsView on unpkg · L7Source file is highly similar to a previously finalized malicious package; route for source-aware review.
src/interfaces/cli/http.jsView on unpkgPackage ships non-JavaScript build or shell helper files.
src/host/daemon/pty-bridge.pyView on unpkgPackage ships compressed or archive-like blobs.
src/interfaces/web/dist/sw.js.gzView on unpkgPackage ships high-entropy non-source blobs.
src/interfaces/web/dist/modules/blobs/onyx.svg.brView on unpkgA bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
src/core/agent/shell/background.js#virtual:normalized:round1View on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/host/daemon/api/admin.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/core/agent/shell/background.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/core/desktop/process.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/core/voice/engines/gemini.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/host/daemon/deck-exec.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/host/daemon/terminal-ws.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/host/daemon/whisper-server.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/interfaces/cli/commands/artifact.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/interfaces/cli/commands/code.jsView on unpkgPackage source references child process execution.
src/core/artifacts/tunnel.jsView on unpkg · L12Package source invokes a package manager install command at runtime.
src/core/artifacts/tunnel.jsView on unpkg · L6Source file is highly similar to a previously finalized malicious package; route for source-aware review.
src/core/net/tailscale.jsView on unpkgPackage source references a known benign dynamic code generation pattern.
src/core/http-tools/browser.jsView on unpkg · L730Package source references weak cryptographic algorithms.
src/core/channels/whatsapp/stickers.jsView on unpkg · L36Source writes installer persistence such as shell profile or service configuration.
src/core/desktop/autostart.jsView on unpkg · L7A manifest entrypoint or package-local install chain reaches persistence behavior.
src/core/desktop/autostart.jsView on unpkg · L7Source file is highly similar to a previously finalized malicious package; route for source-aware review.
src/core/desktop/autostart.jsView on unpkg