火山方舟 ARK 平台命令行工具
LPM flags this version as an AI-agent control-surface risk. npm postinstall downloads a native arkcli binary and then non-interactively runs +connect --refresh, which auto-detects local agents and installs skills into them. README names Claude Code, OpenCode, and Codex as targets, so this is install-time mutation of foreign agent control surfaces without an explicit user command.
Package defines install-time lifecycle scripts.
package.jsonView on unpkgpackage.json runs scripts/postinstall.js automatically on npm postinstall.
package.jsonView on unpkg · L13Install-time lifecycle script is not statically allowlisted and needs review.
package.jsonView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
scripts/postinstall.jsView on unpkgSource fingerprint signature matches a known malicious package signature; route for source-aware review.
scripts/postinstall.jsView on unpkgThis package version adds a dangerous source file absent from the previous stored version; route for source-aware review.
scripts/postinstall.jsView on unpkgThis report applies to @volcengine/ark-cli@1.0.23.
See version security history for other recorded verdicts.
Evidence last updated: .
Package defines install-time lifecycle scripts.
package.jsonView on unpkg · L14Install-time lifecycle script is not statically allowlisted and needs review.
package.jsonView on unpkg · L14package.json runs scripts/postinstall.js automatically on npm postinstall.
package.jsonView on unpkg · L13Source file is highly similar to a previously finalized malicious package; route for source-aware review.
scripts/postinstall.jsView on unpkgSource fingerprint signature matches a known malicious package signature; route for source-aware review.
scripts/postinstall.jsView on unpkgThis package version adds a dangerous source file absent from the previous stored version; route for source-aware review.
scripts/postinstall.js