Claudin — Claude Code opened to any LLM (OpenAI, Gemini, DeepSeek, Ollama, and 200+ models)
No confirmed attack surface was identified in the inspected lifecycle wrapper. The installer replaces the package launcher with its platform binary.
Package defines install-time lifecycle scripts.
package.jsonView on unpkgPackage contains a possible secret pattern.
dist/chunks/cli-1.1.33-7sm3r61g.mjsView on unpkg · L49Package source references child process execution.
dist/chunks/setup-1.1.33-nbfqv6x2.mjsView on unpkg · L1A single source file combines environment access, network access, and code or shell execution with blocking evidence.
dist/chunks/cli-1.1.33-vgynvhys.mjsView on unpkg · L881Source appears to send environment or credential material to an external endpoint.
Source combines command execution, command-output handling, and outbound requests; review data flow before blocking.
dist/chunks/watchLoop-1.1.33-w4q3ncxj.mjsView on unpkg · L1Source reaches cloud instance metadata or link-local credential endpoints.
dist/chunks/index-1.1.33-1cyg72cg.mjsView on unpkg · L1This package version adds a dangerous source file absent from the previous stored version; route for source-aware review.
dist/chunks/bridgeMain-1.1.33-62ytf81q.mjsView on unpkgSource spawns a local helper that also contains network and dynamic execution context; review data flow before blocking.
dist/chunks/bridgeMain-1.1.33-62ytf81q.mjsView on unpkg · L1Source decodes a Base64-obscured HTTP endpoint at runtime.
dist/chunks/defaultActionDeps-1.1.33-t1wa4x2g.mjsView on unpkg · L1A bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
dist/chunks/cli-1.1.33-8xyzgp13.mjs#virtual:normalized:round1View on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/chunks/cli-1.1.33-dd7gk6d2.mjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/chunks/cli-1.1.33-0ktq50cd.mjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/chunks/cli-1.1.33-j6ep4mfm.mjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/chunks/cli-1.1.33-0kvxjey5.mjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/chunks/cli-1.1.33-v08vb0sv.mjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/chunks/cli-1.1.33-525zf497.mjsView on unpkgHardcoded password in dist/chunks/openaiShim-1.1.33-dsp1wwgs.mjs
dist/chunks/openaiShim-1.1.33-dsp1wwgs.mjsView on unpkg · L11This report applies to @claudiolabs/claudin@1.1.33.
See version security history for other recorded verdicts.
Evidence last updated: .
Source matches reverse-shell style process and socket wiring.
dist/chunks/cli-1.1.33-vgynvhys.mjsView on unpkg · L58Package source references shell execution.
dist/chunks/cli-1.1.33-vgynvhys.mjsView on unpkg · L129Package source references dynamic code evaluation.
dist/chunks/cli-1.1.33-vgynvhys.mjsView on unpkg · L881Source exposes local file and command tools to a remote model endpoint.
dist/chunks/cli-1.1.33-vgynvhys.mjsView on unpkg · L138Source file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/chunks/cli-1.1.33-vgynvhys.mjsView on unpkgPackage source references dynamic require/import behavior.
dist/chunks/cli-1.1.33-vgynvhys.mjsView on unpkg · L227Package source references weak cryptographic algorithms.
dist/chunks/cli-1.1.33-vgynvhys.mjsView on unpkg · L58Package defines install-time lifecycle scripts.
package.jsonView on unpkg · L32A single source file combines environment access, network access, and code or shell execution with blocking evidence.
dist/chunks/cli-1.1.33-vgynvhys.mjsView on unpkg · L881Source appears to send environment or credential material to an external endpoint.
Source combines command execution, command-output handling, and outbound requests; review data flow before blocking.
dist/chunks/watchLoop-1.1.33-w4q3ncxj.mjsView on unpkg · L1Source reaches cloud instance metadata or link-local credential endpoints.
dist/chunks/index-1.1.33-1cyg72cg.mjsView on unpkg · L1This package version adds a dangerous source file absent from the previous stored version; route for source-aware review.
dist/chunks/bridgeMain-1.1.33-62ytf81q.mjsView on unpkgSource spawns a local helper that also contains network and dynamic execution context; review data flow before blocking.
dist/chunks/bridgeMain-1.1.33-62ytf81q.mjsView on unpkg · L1Source decodes a Base64-obscured HTTP endpoint at runtime.
dist/chunks/defaultActionDeps-1.1.33-t1wa4x2g.mjsView on unpkg · L1A bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
dist/chunks/cli-1.1.33-8xyzgp13.mjs#virtual:normalized:round1View on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/chunks/cli-1.1.33-dd7gk6d2.mjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/chunks/cli-1.1.33-0ktq50cd.mjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/chunks/cli-1.1.33-j6ep4mfm.mjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/chunks/cli-1.1.33-0kvxjey5.mjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/chunks/cli-1.1.33-v08vb0sv.mjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/chunks/cli-1.1.33-525zf497.mjsView on unpkgHardcoded password in dist/chunks/openaiShim-1.1.33-dsp1wwgs.mjs
dist/chunks/openaiShim-1.1.33-dsp1wwgs.mjsView on unpkg · L11Package contains a possible secret pattern.
dist/chunks/cli-1.1.33-7sm3r61g.mjsView on unpkg · L49Package source references child process execution.
dist/chunks/setup-1.1.33-nbfqv6x2.mjsView on unpkg · L1Source matches reverse-shell style process and socket wiring.
dist/chunks/cli-1.1.33-vgynvhys.mjsView on unpkg · L58Package source references shell execution.
dist/chunks/cli-1.1.33-vgynvhys.mjsView on unpkg · L129Package source references dynamic code evaluation.
dist/chunks/cli-1.1.33-vgynvhys.mjsView on unpkg · L881Source exposes local file and command tools to a remote model endpoint.
dist/chunks/cli-1.1.33-vgynvhys.mjsView on unpkg · L138Source file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/chunks/cli-1.1.33-vgynvhys.mjsView on unpkgPackage source references dynamic require/import behavior.
dist/chunks/cli-1.1.33-vgynvhys.mjsView on unpkg · L227Package source references weak cryptographic algorithms.
dist/chunks/cli-1.1.33-vgynvhys.mjsView on unpkg · L58