AI called this Clean at 94.0% confidence as Benign with low false-positive risk.
Evidence against
- package.json has no lifecycle hooks.
- dist/cli.js only starts the server on explicit CLI use.
- dist/identity.js creates an owner identity at a configured local path with mode 0600.
- dist/agUi/llmRunner.js sends configured LLM credentials only to configured OpenAI-compatible endpoint.
- dist/googleCalendar.js and dist/payment/stripeClient.js call their stated provider APIs using supplied credentials.
- No shell execution, eval, payload loading, broad harvesting, or covert exfiltration found.
Behavioral surface
SourceEnvironmentVarsFilesystemNetwork
Supply chainHighEntropyStringsUrlStrings
ManifestNo manifest risk signals triggered.
scanned 21 file(s), 61.1 KB of source, external domains: 127.0.0.1, api.openai.com, api.stripe.com, apidata.googleusercontent.com, github.com, shell-atom.vercel.app, www.googleapis.com