Standalone Codex account selection, authentication and launcher module.
Static analysis completed at 97.0% confidence. No malicious behavior was detected; 14 low-signal pattern(s) were surfaced and cleared.
Source file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/bin-app.jsView on unpkgPackage source invokes a package manager install command at runtime.
assets/shortcut-bootstrap.cjsView on unpkg · L408Source file is highly similar to a previously finalized malicious package; route for source-aware review.
assets/shortcut-bootstrap.cjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/runtime.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/bin-run.jsView on unpkgThis package version adds a dangerous source file absent from the previous stored version; route for source-aware review.
dist/release-process-shutdown.jsView on unpkgThis report applies to @tokensrc/codex@1.20.3.
See version security history for other recorded verdicts.
Evidence last updated: .
Source file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/bin-app.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/runtime.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/bin-run.jsView on unpkgThis package version adds a dangerous source file absent from the previous stored version; route for source-aware review.
dist/release-process-shutdown.jsView on unpkgPackage source invokes a package manager install command at runtime.
assets/shortcut-bootstrap.cjsView on unpkg · L408Source file is highly similar to a previously finalized malicious package; route for source-aware review.
assets/shortcut-bootstrap.cjsView on unpkg