No confirmed malicious attack surface is established. The package is a Salesforce CML migration CLI whose shell and network behavior is activated by explicit CLI commands and aligned with its stated purpose.
Static reason
No blocking static signals were detected.; previous stored version diff introduced dangerous source
Trigger
User runs `rccml list`, `rccml retrieve`, or `rccml deploy`.
Impact
Can read, write, and delete Salesforce CML-related records in the user-selected org when invoked with authenticated Salesforce credentials.
Mechanism
Salesforce CLI orchestration and Salesforce REST API calls
Rationale
The risky primitives are visible and significant, but they implement the advertised Salesforce deployment workflow and require explicit user invocation. I found no install-time execution, hidden endpoint, credential exfiltration, persistence, destructive local behavior, or AI-agent control mutation.
Evidence
package.jsonREADME.mddist/index.jsdist/lib/sf-util.jsdist/lib/file-util.jsdist/commands/retrieve.jsdist/commands/deploy.jsdist/commands/deploy-helpers.jscml/settings.jsoncml/<apiName>/ExpressionSet.jsoncml/<apiName>/ExpressionSetConstraintObj.jsoncml/<apiName>/Product2.jsoncml/<apiName>/ProductClassification.jsoncml/<apiName>/ProductRelatedComponent.json