Multi-agent AI engineering runtime — audit, fix, graph, analyze
LPM flags this version as an AI-agent control-surface risk. Installation automatically mutates the consumer project and creates generated instructions for AI agents. No network endpoint is needed for this control-surface change.
Install-time lifecycle script matches a deterministic static-gate block pattern.
package.jsonView on unpkgPackage defines install-time lifecycle scripts.
package.jsonView on unpkgPackage source references child process execution.
dist/infra/assist/remote-executor.jsView on unpkg · L1Package source references weak cryptographic algorithms.
dist/infra/project-store.jsView on unpkg · L25Source appears to send environment or credential material to an external endpoint.
dist/infra/embeddings.jsView on unpkg · L41A package entrypoint or install-time lifecycle script reaches a source file with blocking dangerous behavior.
dist/infra/embeddings.jsView on unpkg · L41Source creates an unconsented AI-agent control surface through install-time mutation or a default unauthenticated remote skill channel.
dist/agents/base-agent.jsView on unpkg · L1Runtime or CLI source writes behavior-bearing configuration into a user or project AI-agent control surface.
dist/cli/commands/mcp.jsView on unpkgSource spawns a local helper that also contains network and dynamic execution context; review data flow before blocking.
dist/cli/commands/setup.jsView on unpkg · L2A bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
dist/infra/assist/generators/artifacts.js#virtual:normalized:round1View on unpkgThis package version adds a dangerous source file absent from the previous stored version; route for source-aware review.
dist/prompts/scanner.jsView on unpkgThis report applies to @aionlabsai/aion@1.0.5.
See version security history for other recorded verdicts.
Evidence last updated: .
A manifest entrypoint or package-local install chain reaches credential exfiltration behavior.
dist/infra/embeddings.jsView on unpkg · L41Install-time lifecycle script matches a deterministic static-gate block pattern.
package.jsonView on unpkg · L23Package defines install-time lifecycle scripts.
package.jsonView on unpkg · L23Runtime or CLI source writes behavior-bearing configuration into a user or project AI-agent control surface.
dist/cli/commands/mcp.jsView on unpkgA bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
dist/infra/assist/generators/artifacts.js#virtual:normalized:round1View on unpkgThis package version adds a dangerous source file absent from the previous stored version; route for source-aware review.
dist/prompts/scanner.jsView on unpkgPackage source references child process execution.
dist/infra/assist/remote-executor.jsView on unpkg · L1Package source references weak cryptographic algorithms.
dist/infra/project-store.jsView on unpkg · L25Source appears to send environment or credential material to an external endpoint.
dist/infra/embeddings.jsView on unpkg · L41A package entrypoint or install-time lifecycle script reaches a source file with blocking dangerous behavior.
dist/infra/embeddings.jsView on unpkg · L41A manifest entrypoint or package-local install chain reaches credential exfiltration behavior.
dist/infra/embeddings.jsView on unpkg · L41Source creates an unconsented AI-agent control surface through install-time mutation or a default unauthenticated remote skill channel.
dist/agents/base-agent.jsView on unpkg · L1Source spawns a local helper that also contains network and dynamic execution context; review data flow before blocking.
dist/cli/commands/setup.jsView on unpkg · L2