Loading npm security reports…
Portfolio AI provider/model registry: define providers, models, roles once; resolve which backend, which model, whose key, what base URL. Never makes model calls.
Review flagged AI-agent configuration or capability changes. This remains warn-only unless evidence shows foreign-agent hijack through preinstall/install/postinstall, hidden persistence, exfiltration, remote code execution, or other concrete malicious behavior.
bin/datum.mjs explicitly writes ~/.config/opencode/opencode.json
bin/datum.mjsView on unpkgbin/datum.mjs explicitly writes ~/.config/opencode/opencode.json
bin/datum.mjsView on unpkg