MindExec local runtime and bridge CLI
The user-invoked local bridge exposes command execution. An allowed mindexec.pages.dev origin can read the bridge token from the status endpoint and use it for the shell API.
Source combines command execution, command-output handling, and outbound requests; review data flow before blocking.
server.jsView on unpkg · L12Source spawns a local helper that also contains network and dynamic execution context; review data flow before blocking.
server.jsView on unpkg · L12Package source references a known benign dynamic code generation pattern.
wwwroot/_framework/dotnet.runtime.opaiwunc3t.jsView on unpkg · L2Package source references dynamic require/import behavior.
wwwroot/_content/MindExecution.Shared/js/mind-map-native-render-webview2.jsView on unpkg · L649Package source executes code through a VM context API.
scripts/remote-fleet-render-smoke.mjsView on unpkg · L9A single source file combines environment access, network access, and code or shell execution; review context before blocking.
scripts/remote-fast-mdm-browser-smoke.mjsView on unpkg · L3Source launches a detached bundled service that exposes a broad-bound HTTP listener.
electron/main.cjsView on unpkg · L3Package ships native binary artifacts.
wwwroot/_framework/Microsoft.AspNetCore.Authorization.htf46vkphd.dllView on unpkgPackage ships WebAssembly modules.
wwwroot/_content/MindExecution.Shared/native-core/mindexec-core.wasmView on unpkgPackage ships non-JavaScript build or shell helper files.
start-bridge.batView on unpkgA bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
codex-runtime.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
wwwroot/_content/MindExecution.Shared/js/marked.min.jsView on unpkgThis report applies to @mindexec/cli@0.2.521.
See version security history for other recorded verdicts.
Evidence last updated: .
Source combines command execution, command-output handling, and outbound requests; review data flow before blocking.
server.jsView on unpkg · L12Source spawns a local helper that also contains network and dynamic execution context; review data flow before blocking.
server.jsView on unpkg · L12Source launches a detached bundled service that exposes a broad-bound HTTP listener.
electron/main.cjsView on unpkg · L3Package ships native binary artifacts.
wwwroot/_framework/Microsoft.AspNetCore.Authorization.htf46vkphd.dllView on unpkgPackage ships WebAssembly modules.
wwwroot/_content/MindExecution.Shared/native-core/mindexec-core.wasmView on unpkgPackage ships non-JavaScript build or shell helper files.
start-bridge.batView on unpkgA bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
codex-runtime.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
wwwroot/_content/MindExecution.Shared/js/marked.min.jsView on unpkgPackage source references a known benign dynamic code generation pattern.
wwwroot/_framework/dotnet.runtime.opaiwunc3t.jsView on unpkg · L2Package source references dynamic require/import behavior.
wwwroot/_content/MindExecution.Shared/js/mind-map-native-render-webview2.jsView on unpkg · L649Package source executes code through a VM context API.
scripts/remote-fleet-render-smoke.mjsView on unpkg · L9A single source file combines environment access, network access, and code or shell execution; review context before blocking.
scripts/remote-fast-mdm-browser-smoke.mjsView on unpkg · L3