registry  /  @gakwaya/app-agent-tools  /  1.3.0

@gakwaya/app-agent-tools@1.3.0

Advanced tool system with composition, discovery, and enhanced execution

Static Scan Results

scanned 2h ago · by rust-scanner

Static analysis flagged 4 finding(s) at 72.0% confidence. This version is warn-only unless an AI or security-team review confirms malicious behavior.

Static reason
One or more suspicious static signals were detected.

Decision evidence

public snapshot
Behavioral surface
SourceNo risky source behavior triggered.
Supply chain
HighEntropyStrings
ManifestNo manifest risk signals triggered.
scanned 1 file(s), 25.5 KB of source

Source & flagged code

1 flagged · loading source
dist/index.jsView file
273if (_0x3fdd["ZRHmSs"] === void 0) { L274: var _0x1d32ae = function(_0x409b75) { L275: const _0x996c5 = "[redacted]+/=";
High
Obfuscated Payload Loader

Source contains an obfuscator-style string-array loader that reconstructs and executes hidden code.

dist/index.jsView on unpkg · L273

Findings

1 High1 Medium2 Low
HighObfuscated Payload Loaderdist/index.js
MediumStructural Risk Force Deep Review
LowScripts Present
LowHigh Entropy Strings