39`],["r","\r"],["t"," "],["b","\b"],["f","\f"],["v","\v"],["0","\0"],["\\","\\"],["e","\x1B"],["a","\x07"]]);function VR(r){let e=r[0]==="u",t=r[1]==="{";return e&&!t&&r.length===5|...
L40: `);return s!==-1&&(e=mpe(e,n,i,s)),i+e+n},rE,XR=(r,...e)=>{let[t]=e;if(!pb(t)||!pb(t.raw))return e.join(" ");let i=e.slice(1),n=[t.raw[0]];for(let s=1;s<t.length;s++)n.push(String(...
L41: `))this.lineCount+=Math.max(1,Math.ceil(M0e(i)/e))}get isEnabled(){return this._isEnabled&&!this.isSilent}set isEnabled(e){if(typeof e!="boolean")throw new TypeError("The `isEnable...
...
L47: \v\f\r\x1B !"#\xA5%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\\]^_\`abcdefghijklmnopqrstuvwxyz{|}\u203E\x7F\uFFFD\uFFFD\uFFFD\uFFFD\uFFFD\uFFFD\uFFFD\u...
L48: \v\f\r\x1B !"#$%&'
CriticalSame File Env Network Execution
A single source file combines environment access, network access, and code or shell execution with blocking evidence.
dist/bundle.cjsView on unpkg · L39 1var FY=Object.create;var aC=Object.defineProperty;var IY=Object.getOwnPropertyDescriptor;var OY=Object.getOwnPropertyNames;var MY=Object.getPrototypeOf,RY=Object.prototype.hasOwnPr...
L2: `).replace(/^/gm," ".repeat(s))}let u=[`Usage: ${t.commandUsage(e)}`,""],l=t.commandDescription(e);l.length>0&&(u=u.concat([t.wrap(l,n,0),""]));let d=t.visibleArguments(e).map(p=>a...
...
L9: (Did you mean one of ${i.join(", ")}?)`:i.length===1?`
L10: (Did you mean ${i[0]}?)`:""}j8.suggestSimilar=WY});var G8=w(H8=>{var VY=require("events").EventEmitter,yC=require("child_process"),gs=require("path"),xC=require("fs"),Mt=require("p...
L11: - specify the name in Command constructor or using .name()`);return t=t||{},t.isDefault&&(this._defaultCommandName=e._name),(t.noHelp||t.hidden)&&(e._hidden=!0),this.c
CriticalPersistence Backdoor
Source writes persistence or remote-access backdoor material.
dist/bundle.cjsView on unpkg · L1 1var FY=Object.create;var aC=Object.defineProperty;var IY=Object.getOwnPropertyDescriptor;var OY=Object.getOwnPropertyNames;var MY=Object.getPrototypeOf,RY=Object.prototype.hasOwnPr...
L2: `).replace(/^/gm," ".repeat(s))}let u=[`Usage: ${t.commandUsage(e)}`,""],l=t.commandDescription(e);l.length>0&&(u=u.concat([t.wrap(l,n,0),""]));let d=t.visibleArguments(e).map(p=>a...
...
L9: (Did you mean one of ${i.join(", ")}?)`:i.length===1?`
L10: (Did you mean ${i[0]}?)`:""}j8.suggestSimilar=WY});var G8=w(H8=>{var VY=require("events").EventEmitter,yC=require("child_process"),gs=require("path"),xC=require("fs"),Mt=require("p...
L11: - specify the name in Command constructor or using .name()`);return t=t||{},t.isDefault&&(this._defaultCommandName=e._name),(t.noHelp||t.hidden)&&(e._hidden=!0),this.c
CriticalDownload Execute
Source downloads or fetches remote code and executes it.
dist/bundle.cjsView on unpkg · L1 211${i("Argument: %s, Given: %s, Choices: %s",g,e.stringifiedValues(f[g]),e.stringifiedValues(h.choices[g]))}`}),e.fail(m)};let o={};s.implies=function(d,h){he("<string|object> [array...
L212: `;h.forEach(p=>{f+=p}),e.fail(f)}};let c={};s.conflicts=function(d,h){he("<string|object> [array|string]",[d,h],arguments.length),typeof d=="object"?Object.keys(d).forEach(f=>{s.co...
L213: `),void 0,"versionWarning"),C(this,ve,"f").key[e]=!0,t.alias&&this.alias(e,t.alias);let i=t.deprecate||t.deprecated;i&&this.deprecateOption(e,i);let n=t.demand||t.required||t.requi...
L214: `,"f"),fe(this,vr,C(this,vr,"f")+e.join(" "),"f")},error:(...e)=>{this[X2]()||console.error(...e),fe(this,Mi,!0,"f"),C(this,vr,"f").length&&fe(this,vr,C(this,vr,"f")+`
L215: `,"f"),fe(this,vr,C(this,vr,"f")+e.join(" "),"f")}
CriticalRemote Asset Decode Execute
Source fetches a remote non-code asset, decodes its contents, and dynamically executes the decoded payload.
dist/bundle.cjsView on unpkg · L211 •context = eplace(/./g,this.replace)}this.emit("data",e)}end(e){this.muted&&(e&&this.replace?e=e.toString().replace(/./g,this.replace):e=null),e&&this.emit("data",e),this.emit("end")}destroy(...e){return this.#r("destroy",...e)}destroySoon(...e){return this.#r("destroySoon",...e)}close(...e){return this.#r("close",...e)}};V9.exports=f6});function ww(){Nr.default.existsSync(Kf)||Nr.default.mkdirSync(Kf,{recursive:!0,mode:448})}function eN(){if(ww(),!Nr.default.existsSync(m6)){let r=dc.default.randomBytes(32);return Nr.default.writeFileSync(m6,r,{mode:384}),r}return Nr.default.readFileSync(m6)}function tN(r){if(!r||r.startsWith("ENC:"))return r;let e=eN(),t=dc.default.randomBytes(16),i=dc.default.createCipheriv("aes-256-gcm",e,t),n=i.update(r,"utf8","hex");n+=i.final("hex");let s=i.getAuthTag
CriticalEncrypted Payload Temp Execution
Source decrypts an embedded payload, writes it to disk, and executes it through a child process.
dist/bundle.cjsView on unpkg •matchType = previous_version_dangerous_delta
matchedPackage = @vanexalabs-ai/vanexa-agent@1.3.69
matchedIdentity = npm:[redacted]:1.3.69
similarity = 1.000
summary = stored previous version shares package body but lacks this dangerous source file
CriticalPrevious Version Dangerous Delta
This package version adds a dangerous source file absent from the previous stored version; route for source-aware review.
dist/bundle.cjsView on unpkg 9(Did you mean one of ${i.join(", ")}?)`:i.length===1?`
L10: (Did you mean ${i[0]}?)`:""}j8.suggestSimilar=WY});var G8=w(H8=>{var VY=require("events").EventEmitter,yC=require("child_process"),gs=require("path"),xC=require("fs"),Mt=require("p...
L11: - specify the name in Command constructor or using .name()`);return t=t||{},t.isDefault&&(this._defaultCommandName=e._name),(t.noHelp||t.hidden)&&(e._hidden=!0),this.commands.push(...
HighChild Process
Package source references child process execution.
dist/bundle.cjsView on unpkg · L9 33`,n)}while(i!==-1);return s+=r.substr(n),s};uR.exports={stringReplaceAll:Wfe,stringEncaseCRLFWithFirstIndex:Vfe}});var mR=w((wke,pR)=>{"use strict";var Hfe=/(?:\\(u(?:[a-f\d]{4}|\{...
L34: `],["r","\r"],["t"," "],["b","\b"],["f","\f"],["v","\v"],["0","\0"],["\\","\\"],["e","\x1B"],["a","\x07"]]);function fR(r){let e=r[0]==="u",t=r[1]==="{";return e&&!t&&r.length===5|...
L35: `);return s!==-1&&(e=Qfe(e,n,i,s)),i+e+n},KS,wR=(r,...e)=>{let[t]=e;if(!rb(t)||!rb(t.raw))return e.join(" ");let i=e.slice(1),n=[t.raw[0]];for(let s=1;s<t.length;s++)n.push(String(...
L36: `:`
...
L39: `],["r","\r"],["t"," "],["b","\b"],["f","\f"],["v","\v"],["0","\0"],["\\","\\"],["e","\x1B"],["a","\x07"]]);function VR(r){let e=r[0]==="u",t=r[1]==="{";return e&&!t&&r.length===5|...
L40: `);return s!==-1&&(e=mpe(e
HighCommand Output Exfiltration
Source combines command execution, command-output handling, and outbound requests; review data flow before blocking.
dist/bundle.cjsView on unpkg · L33 1var FY=Object.create;var aC=Object.defineProperty;var IY=Object.getOwnPropertyDescriptor;var OY=Object.getOwnPropertyNames;var MY=Object.getPrototypeOf,RY=Object.prototype.hasOwnPr...
L2: `).replace(/^/gm," ".repeat(s))}let u=[`Usage: ${t.commandUsage(e)}`,""],l=t.commandDescription(e);l.length>0&&(u=u.concat([t.wrap(l,n,0),""]));let d=t.visibleArguments(e).map(p=>a...
...
L9: (Did you mean one of ${i.join(", ")}?)`:i.length===1?`
L10: (Did you mean ${i[0]}?)`:""}j8.suggestSimilar=WY});var G8=w(H8=>{var VY=require("events").EventEmitter,yC=require("child_process"),gs=require("path"),xC=require("fs"),Mt=require("p...
L11: - specify the name in Command constructor or using .name()`);return t=t||{},t.isDefault&&(this._defaultCommandName=e._name),(t.noHelp||t.hidden)&&(e._hidden=!0),this.c
HighHidden Inline Dependency Execution
Source silently spawns a Node process to execute an inline dependency payload.
dist/bundle.cjsView on unpkg · L1 1var FY=Object.create;var aC=Object.defineProperty;var IY=Object.getOwnPropertyDescriptor;var OY=Object.getOwnPropertyNames;var MY=Object.getPrototypeOf,RY=Object.prototype.hasOwnPr...
L2: `).replace(/^/gm," ".repeat(s))}let u=[`Usage: ${t.commandUsage(e)}`,""],l=t.commandDescription(e);l.length>0&&(u=u.concat([t.wrap(l,n,0),""]));let d=t.visibleArguments(e).map(p=>a...
...
L9: (Did you mean one of ${i.join(", ")}?)`:i.length===1?`
L10: (Did you mean ${i[0]}?)`:""}j8.suggestSimilar=WY});var G8=w(H8=>{var VY=require("events").EventEmitter,yC=require("child_process"),gs=require("path"),xC=require("fs"),Mt=require("p...
L11: - specify the name in Command constructor or using .name()`);return t=t||{},t.isDefault&&(this._defaultCommandName=e._name),(t.noHelp||t.hidden)&&(e._hidden=!0),this.c
HighSandbox Evasion Gated Capability
Source gates dangerous network, credential, or execution behavior behind CI, host, platform, time, or geo fingerprint checks.
dist/bundle.cjsView on unpkg · L1 9(Did you mean one of ${i.join(", ")}?)`:i.length===1?`
L10: (Did you mean ${i[0]}?)`:""}j8.suggestSimilar=WY});var G8=w(H8=>{var VY=require("events").EventEmitter,yC=require("child_process"),gs=require("path"),xC=require("fs"),Mt=require("p...
L11: - specify the name in Command constructor or using .name()`);return t=t||{},t.isDefault&&(this._defaultCommandName=e._name),(t.noHelp||t.hidden)&&(e._hidden=!0),this.commands.push(...
...
L42: `),this)}stop(){return this.isEnabled?(clearInterval(this.id),this.id=void 0,this.frameIndex=0,this.clear(),this.hideCursor&&DB.show(this.stream),this.discardStdin&&process.stdin.i...
L43: `),this}},j0e=function(r){return new Nb(r)};WE.exports=j0e;WE.exports.promise=(r,e)=>{if(typeof r.then!="function")throw new TypeError("Parameter `action` must be a
HighRemote Agent Bridge
Source exposes local file and command tools to a remote model endpoint.
dist/bundle.cjsView on unpkg · L9 214`,"f"),fe(this,vr,C(this,vr,"f")+e.join(" "),"f")},error:(...e)=>{this[X2]()||console.error(...e),fe(this,Mi,!0,"f"),C(this,vr,"f").length&&fe(this,vr,C(this,vr,"f")+`
L215: `,"f"),fe(this,vr,C(this,vr,"f")+e.join(" "),"f")}}}[YF](e){vh(C(this,ve,"f")).forEach(t=>{if((n=>n==="configObjects")(t))return;let i=C(this,ve,"f")[t];Array.isArray(i)?i.includes...
L216: `).map(N=>N.trim()).filter(N=>!!N);if(!m||!g)throw new Error(`Invalid DevToolsActivePort '${p}' found`);let y=parseInt(m,10);if(isNaN(y)||y<=0||y>65535)throw new Error(`Invalid por...
L217: `);throw Re.includes("Failed to create a ProcessSingleton for your profile directory")||process.platform==="win32"&&(0,p0.existsSync)((0,g3.join)(I.userDataDir,"lockfile"))?new Err...
L218: 1. you did not perform an installation before runn
HighRuntime Package Install
Package source invokes a package manager install command at runtime.
dist/bundle.cjsView on unpkg · L214 •stage = ast_semantic_analysis; reason = ast_path_work_budget_exceeded; limitedFiles = 1
HighSemantic Analysis Limited
A bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
dist/bundle.cjsView on unpkg •matchType = normalized_sha256
matchedPackage = @ikbal_fadilah_vanexa01/vanexa-agent@1.3.24
matchedPath = dist/bundle.cjs
matchedIdentity = npm:[redacted]:1.3.24
similarity = 1.000
summary = normalized source hash matched finalized malicious source
HighKnown Malware Source Similarity
Source file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/bundle.cjsView on unpkg