Remote worker agent for Yeaft Web Code Agent — connects the native Yeaft engine, CLI providers, and workbench tools
OpenSSF/OSV advisory MAL-2026-10723 confirms this npm version as malicious. The package installs itself as a user-level service (systemd on Linux via service/linux.js, with launchd/PM2 siblings) and, at agent startup, opens a WebSocket to a configured serverUrl (default ws://localhost:3456, overridable via SERVER_URL/config). The WebSocket message router in connection/message-router.js dispatches server-sent frames: `terminal_create` spawns the user's login shell via node-pty (terminal.js:...
Package contains a critical-looking secret pattern.
local-runtime/server/auth/providers/alipay.jsView on unpkg · L32RSA private key in local-runtime/server/auth/providers/alipay.js
local-runtime/server/auth/providers/alipay.jsView on unpkg · L32Package source references child process execution.
Source writes installer persistence such as shell profile or service configuration.
connection/upgrade.jsView on unpkg · L1Package source references a known benign dynamic code generation pattern.
local-runtime/web/jszip.min.jsView on unpkg · L12Package source references dynamic require/import behavior.
connection/upgrade-worker-template.jsView on unpkg · L1Package source executes code through a VM context API.
yeaft/tools/js-repl.jsView on unpkg · L1Package source invokes a package manager install command at runtime.
service/windows.jsView on unpkg · L19Package ships high-entropy non-source blobs.
local-runtime/web/xlsx.min.js.gzView on unpkgPackage ships compressed or archive-like blobs.
local-runtime/web/xlsx.min.js.gzView on unpkgThis package version adds a dangerous source file absent from the previous stored version; route for source-aware review.
cli.jsView on unpkgPackage contains a critical-looking secret pattern.
local-runtime/server/auth/providers/alipay.jsView on unpkg · L32RSA private key in local-runtime/server/auth/providers/alipay.js
local-runtime/server/auth/providers/alipay.jsView on unpkg · L32Package source references child process execution.
connection/upgrade.jsView on unpkg · L1Package source references dynamic require/import behavior.
Package source executes code through a VM context API.
yeaft/tools/js-repl.jsView on unpkg · L1Package ships high-entropy non-source blobs.
local-runtime/web/xlsx.min.js.gzView on unpkgPackage ships compressed or archive-like blobs.
local-runtime/web/xlsx.min.js.gzView on unpkgThis package version adds a dangerous source file absent from the previous stored version; route for source-aware review.
cli.jsView on unpkgSource writes installer persistence such as shell profile or service configuration.
connection/upgrade.jsView on unpkg · L1Package source references a known benign dynamic code generation pattern.
local-runtime/web/jszip.min.jsView on unpkg · L12Package source invokes a package manager install command at runtime.
service/windows.jsView on unpkg · L19