The npm distribution is discontinued. Install the standalone Astrale CLI: https://github.com/astrale-os/cli#installation
Astrale CLI — connect to existing Astrale kernels
Review flagged AI-agent configuration or capability changes. This remains warn-only unless evidence shows foreign-agent hijack through preinstall/install/postinstall, hidden persistence, exfiltration, remote code execution, or other concrete malicious behavior.
Package defines install-time lifecycle scripts.
package.jsonView on unpkgPackage source references child process execution.
studio/server/agent/harness/process.tsView on unpkg · L1Source combines credential-like environment material and outbound requests; review data flow before blocking.
dist/astrale.jsView on unpkg · L55Manifest-reachable source sends a prompted API credential to a fixed unofficial gateway and persists the redirection.
dist/astrale.jsView on unpkgManifest-reachable source overwrites another installed package with package-defined remote behavior.
dist/astrale.jsView on unpkgSource combines command execution, command-output handling, and outbound requests; review data flow before blocking.
dist/astrale.jsView on unpkg · L55Source contains an obfuscated payload loader that reconstructs and executes hidden code.
dist/astrale.jsView on unpkg · L63376Source spawns a local helper that also contains network and dynamic execution context; review data flow before blocking.
dist/astrale.jsView on unpkg · L55A manifest entrypoint or package-local install chain reaches credential exfiltration behavior.
dist/astrale.jsView on unpkg · L55A bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
dist/astrale.jsView on unpkgPackage source references a known benign dynamic code generation pattern.
dist/astrale.jsView on unpkg · L33384Package source references dynamic require/import behavior.
studio/server/introspect/core-extractor.tsView on unpkg · L75A single source file combines environment access, network access, and code or shell execution; review context before blocking.
studio/server/view-dev-server.tsView on unpkg · L150Source file is highly similar to a previously finalized malicious package; route for source-aware review.
studio/server/view-dev-server.tsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/telemetry/analyze.tsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/telemetry/trigger.tsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
studio/server/index.tsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
studio/server/state/create.tsView on unpkgPackage defines install-time lifecycle scripts.
package.jsonView on unpkg · L102Package source references child process execution.
studio/server/agent/harness/process.tsView on unpkg · L1Source combines credential-like environment material and outbound requests; review data flow before blocking.
dist/astrale.jsView on unpkg · L55Source file is highly similar to a previously finalized malicious package; route for source-aware review.
src/telemetry/analyze.tsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/telemetry/trigger.tsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
studio/server/index.tsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
studio/server/state/create.tsView on unpkgManifest-reachable source sends a prompted API credential to a fixed unofficial gateway and persists the redirection.
dist/astrale.jsView on unpkgManifest-reachable source overwrites another installed package with package-defined remote behavior.
dist/astrale.jsView on unpkgSource combines command execution, command-output handling, and outbound requests; review data flow before blocking.
dist/astrale.jsView on unpkg · L55Source contains an obfuscated payload loader that reconstructs and executes hidden code.
dist/astrale.jsView on unpkg · L63376Source spawns a local helper that also contains network and dynamic execution context; review data flow before blocking.
dist/astrale.jsView on unpkg · L55A manifest entrypoint or package-local install chain reaches credential exfiltration behavior.
dist/astrale.jsView on unpkg · L55A bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
dist/astrale.jsView on unpkgPackage source references a known benign dynamic code generation pattern.
dist/astrale.jsView on unpkg · L33384Package source references dynamic require/import behavior.
studio/server/introspect/core-extractor.tsView on unpkg · L75A single source file combines environment access, network access, and code or shell execution; review context before blocking.
studio/server/view-dev-server.tsView on unpkg · L150Source file is highly similar to a previously finalized malicious package; route for source-aware review.
studio/server/view-dev-server.tsView on unpkg