A personal Git workflow CLI for repo onboarding, branching, Release Lane Models, and release workflows.
LPM treats this as warn-only first-party agent extension lifecycle risk. npm postinstall runs local bootstrap code that refreshes Lanesmith settings and previously installed Lanesmith agent-harness assets. The refresh is scoped to detected package-owned assets, but modifies global agent command locations without an explicit command.
Package defines install-time lifecycle scripts.
package.jsonView on unpkgInstall-time lifecycle script is not statically allowlisted and needs review.
package.jsonView on unpkgPackage ships non-JavaScript build or shell helper files.
share/settings/templates/github-actions/direct/release-direct.shView on unpkgpostinstall executes compiled global settings and harness bootstrap entries.
scripts/postinstall.mjsView on unpkg · L22postinstall executes compiled global settings and harness bootstrap entries.
scripts/postinstall.mjsView on unpkg · L43Package defines install-time lifecycle scripts.
package.jsonView on unpkg · L29Install-time lifecycle script is not statically allowlisted and needs review.
package.jsonView on unpkg · L29Package ships non-JavaScript build or shell helper files.
share/settings/templates/github-actions/direct/release-direct.shView on unpkgpostinstall executes compiled global settings and harness bootstrap entries.
scripts/postinstall.mjsView on unpkg · L22postinstall executes compiled global settings and harness bootstrap entries.
scripts/postinstall.mjsView on unpkg · L43