Inter-assistant communication bus, monotonic fencing locks, and work queues over Redis
Static analysis completed at 97.0% confidence. No malicious behavior was detected; 11 low-signal pattern(s) were surfaced and cleared.
Source gates dangerous network, credential, or execution behavior behind CI, host, platform, time, or geo fingerprint checks.
bin/run.jsView on unpkg · L4This package version adds a dangerous source file absent from the previous stored version; route for source-aware review.
bin/run.jsView on unpkgPackage ships native binary artifacts.
bin/binaries/rhizo-darwin-arm64View on unpkgPackage ships non-JavaScript build or shell helper files.
scripts/ci/build.shView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
skills/rhizo/opencode-ear.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
skills/rhizo/pi-ear.tsView on unpkgThis report applies to @axiomantic/rhizo@0.1.10.
See version security history for other recorded verdicts.
Evidence last updated: .
Source gates dangerous network, credential, or execution behavior behind CI, host, platform, time, or geo fingerprint checks.
bin/run.jsView on unpkg · L4This package version adds a dangerous source file absent from the previous stored version; route for source-aware review.
bin/run.jsView on unpkgPackage ships native binary artifacts.
bin/binaries/rhizo-darwin-arm64View on unpkgPackage ships non-JavaScript build or shell helper files.
scripts/ci/build.shView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
skills/rhizo/opencode-ear.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
skills/rhizo/pi-ear.tsView on unpkg