Verified repository-aware coding workflow CLI for AI agents
Static analysis flagged 13 finding(s) at 93.0% confidence. This version is warn-only unless an AI or security-team review confirms malicious behavior.
Package text addresses the security reviewer or scanner and tries to influence the review outcome.
README.mdView on unpkgPackage contains a possible secret pattern.
src/cli/commands/auth.jsView on unpkg · L88Source reaches cloud instance metadata or link-local credential endpoints.
src/llm/provider.jsView on unpkg · L5A bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
package.jsonView on unpkgThis package version adds a dangerous source file absent from the previous stored version; route for source-aware review.
src/cli/gui-commands.jsView on unpkgThis report applies to @flotic/minitok@1.4.0.
See version security history for other recorded verdicts.
Evidence last updated: .
Package text addresses the security reviewer or scanner and tries to influence the review outcome.
README.mdView on unpkgA bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
package.jsonView on unpkgThis package version adds a dangerous source file absent from the previous stored version; route for source-aware review.
src/cli/gui-commands.jsView on unpkgPackage contains a possible secret pattern.
src/cli/commands/auth.jsView on unpkg · L88Source reaches cloud instance metadata or link-local credential endpoints.
src/llm/provider.jsView on unpkg · L5