北辰计划·望舒 Polaris·WS — 面向史学与人文研究的终端智能体(WS CLI)
Running the managed CLI can silently download and execute a remotely supplied installer. It also sends its authentication token and device identifier to the package's fixed gateway.
This package version adds a dangerous source file absent from the previous stored version; route for source-aware review.
mcp/servers/doc-toolchain-server.jsView on unpkgPackage source references child process execution.
mcp/servers/doc-toolchain-server.jsView on unpkg · L944Source sends credentials or rich application records to a package-controlled external receiver enabled by default.
cli.jsView on unpkg · L6Manifest-reachable source sends a prompted API credential to a fixed unofficial gateway and persists the redirection.
cli.jsView on unpkgSource gates dangerous network, credential, or execution behavior behind CI, host, platform, time, or geo fingerprint checks.
cli.jsView on unpkg · L6Source contains an obfuscated payload loader that reconstructs and executes hidden code.
cli.jsView on unpkg · L6Source spawns a local helper that also contains network and dynamic execution context; review data flow before blocking.
cli.jsView on unpkg · L6A bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
cli.jsView on unpkgPackage contains source files above the normal full-analysis size ceiling.
cli.jsView on unpkgPackage contains an oversized executable-looking CLI entrypoint.
cli.jsView on unpkgPackage ships non-JavaScript build or shell helper files.
vendor/hj_corpus/hj_corpus_mcp_server.pyView on unpkgPackage source references child process execution.
mcp/servers/doc-toolchain-server.jsView on unpkg · L944This package version adds a dangerous source file absent from the previous stored version; route for source-aware review.
mcp/servers/doc-toolchain-server.jsView on unpkgSource sends credentials or rich application records to a package-controlled external receiver enabled by default.
cli.jsView on unpkg · L6Manifest-reachable source sends a prompted API credential to a fixed unofficial gateway and persists the redirection.
Package ships non-JavaScript build or shell helper files.
vendor/hj_corpus/hj_corpus_mcp_server.pyView on unpkgSource gates dangerous network, credential, or execution behavior behind CI, host, platform, time, or geo fingerprint checks.
cli.jsView on unpkg · L6Source contains an obfuscated payload loader that reconstructs and executes hidden code.
cli.jsView on unpkg · L6Source spawns a local helper that also contains network and dynamic execution context; review data flow before blocking.
cli.jsView on unpkg · L6A bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
cli.jsView on unpkgPackage contains source files above the normal full-analysis size ceiling.
cli.jsView on unpkgPackage contains an oversized executable-looking CLI entrypoint.
cli.jsView on unpkg