MCP server for Hailer - provides 52 tools to AI assistants (Claude Desktop, Claude Code).
LPM flags this version as an AI-agent control-surface risk. Installing the package automatically writes packaged Claude skills into the consuming project's agent directory. This changes a foreign AI-agent control surface without an explicit setup command.
Package defines install-time lifecycle scripts.
package.jsonView on unpkgInstall-time lifecycle script is not statically allowlisted and needs review.
package.jsonView on unpkgPackage source references dynamic require/import behavior.
dist/public-chat/session-store.jsView on unpkg · L23Source creates an unconsented AI-agent control surface through install-time mutation or a default unauthenticated remote skill channel.
scripts/postinstall.cjsView on unpkg · L2Package ships non-JavaScript build or shell helper files.
scripts/build-public-chat-knowledge.pyView on unpkgA bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
dist/bot/services/operation-logger.js#virtual:normalized:round1View on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/mcp/publish-auth-injector.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/scaffold-cli/app-codegen.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/scaffold-cli/bootstrap.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/server/config.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/mcp/tools/file.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/mcp/utils/file-upload.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/public-chat/graduate.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/mcp/tools/workflow-shared.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/mcp/workspace-admin-store.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
scripts/smoke-public-chat-live.tsView on unpkgThis report applies to @hailer/mcp@1.3.56.
See version security history for other recorded verdicts.
Evidence last updated: .
Package defines install-time lifecycle scripts.
package.jsonView on unpkg · L29Install-time lifecycle script is not statically allowlisted and needs review.
package.jsonView on unpkg · L29Source creates an unconsented AI-agent control surface through install-time mutation or a default unauthenticated remote skill channel.
scripts/postinstall.cjsView on unpkg · L2Package ships non-JavaScript build or shell helper files.
scripts/build-public-chat-knowledge.pyView on unpkgA bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
dist/bot/services/operation-logger.js#virtual:normalized:round1View on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/mcp/publish-auth-injector.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/scaffold-cli/app-codegen.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/scaffold-cli/bootstrap.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/server/config.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/mcp/tools/file.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/mcp/utils/file-upload.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/public-chat/graduate.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/mcp/tools/workflow-shared.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/mcp/workspace-admin-store.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
scripts/smoke-public-chat-live.tsView on unpkgPackage source references dynamic require/import behavior.
dist/public-chat/session-store.jsView on unpkg · L23