Cotal connector for OpenCode: a native in-process plugin that joins a session to the mesh.
LPM treats this as warn-only first-party agent extension lifecycle risk. The package installs an in-process OpenCode plugin into a connector-created launch configuration. No install-time persistence or confirmed external credential export was found.
Source matches reverse-shell style process and socket wiring.
dist/serve.jsView on unpkg · L1A single source file combines environment access, network access, and code or shell execution; review context before blocking.
dist/serve.jsView on unpkg · L84Source gates dangerous network, credential, or execution behavior behind CI, host, platform, time, or geo fingerprint checks.
dist/serve.jsView on unpkg · L1Source spawns a local helper that also contains network and dynamic execution context; review data flow before blocking.
dist/index.jsView on unpkg · L7Source file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/plugin/index.jsView on unpkgThis report applies to @cotal-ai/connector-opencode@0.56.1.
See version security history for other recorded verdicts.
Evidence last updated: .
Source matches reverse-shell style process and socket wiring.
dist/serve.jsView on unpkg · L1Source gates dangerous network, credential, or execution behavior behind CI, host, platform, time, or geo fingerprint checks.
dist/serve.jsView on unpkg · L1Source spawns a local helper that also contains network and dynamic execution context; review data flow before blocking.
dist/index.jsView on unpkg · L7Source file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/plugin/index.jsView on unpkgA single source file combines environment access, network access, and code or shell execution; review context before blocking.
dist/serve.jsView on unpkg · L84