Cotal connector for OpenCode: a native in-process plugin that joins a session to the mesh.
LPM treats this as warn-only first-party agent extension lifecycle risk. A user or manager that launches this connector causes it to inject a local OpenCode plugin with allow permissions. The shim then starts OpenCode and communicates with its local server.
Source matches reverse-shell style process and socket wiring.
dist/serve.jsView on unpkg · L1A single source file combines environment access, network access, and code or shell execution; review context before blocking.
dist/serve.jsView on unpkg · L1Source gates dangerous network, credential, or execution behavior behind CI, host, platform, time, or geo fingerprint checks.
dist/serve.jsView on unpkg · L1Source spawns a local helper that also contains network and dynamic execution context; review data flow before blocking.
dist/index.jsView on unpkg · L7This report applies to @cotal-ai/connector-opencode@0.48.1.
See version security history for other recorded verdicts.
Evidence last updated: .
A single source file combines environment access, network access, and code or shell execution; review context before blocking.
dist/serve.jsView on unpkg · L1Source matches reverse-shell style process and socket wiring.
dist/serve.jsView on unpkg · L1Source gates dangerous network, credential, or execution behavior behind CI, host, platform, time, or geo fingerprint checks.
dist/serve.jsView on unpkg · L1Source spawns a local helper that also contains network and dynamic execution context; review data flow before blocking.
dist/index.jsView on unpkg · L7