Native-messaging host installer that lets the Lizard Studio browser extension drive the local Claude Code CLI.
LPM treats this as warn-only first-party agent extension lifecycle risk. An explicit host installation persists a browser native-messaging bridge that launches Claude Code. Each host start can replace its bundled Claude plugin instructions from a mutable GitHub branch.
Source downloads or fetches remote code and executes it.
src/host/claude-host.mjsView on unpkg · L5Package source references child process execution.
src/host/claude-host.mjsView on unpkg · L98At host startup, it fetches mutable GitHub content and overwrites bundled agent skill files.
src/host/claude-host.mjsView on unpkg · L234At host startup, it fetches mutable GitHub content and overwrites bundled agent skill files.
src/host/claude-host.mjsView on unpkg · L297The fetched skill directory is passed to every spawned Claude session as a plugin.
src/host/claude-host.mjsView on unpkg · L1245This report applies to @lizard-build/lizard-studio-host@1.0.24.
See version security history for other recorded verdicts.
Evidence last updated: .
Source downloads or fetches remote code and executes it.
src/host/claude-host.mjsView on unpkg · L5Package source references child process execution.
src/host/claude-host.mjsView on unpkg · L98At host startup, it fetches mutable GitHub content and overwrites bundled agent skill files.
src/host/claude-host.mjsView on unpkg · L234At host startup, it fetches mutable GitHub content and overwrites bundled agent skill files.
src/host/claude-host.mjsView on unpkg · L297The fetched skill directory is passed to every spawned Claude session as a plugin.
src/host/claude-host.mjsView on unpkg · L1245