Agent-board dashboard for Pi: dispatch, monitor, peek/reply, and attach to background Pi sessions.
No confirmed attack was identified in the inspected source. Installation replaces two specific nested dependencies; runtime helpers support dashboard sessions.
Package defines install-time lifecycle scripts.
package.jsonView on unpkgPackage source references child process execution.
runner/state-runner.mjsView on unpkg · L8Package source references weak cryptographic algorithms.
src/core/auto-state.mjsView on unpkg · L25Package source invokes a package manager install command at runtime.
scripts/patch-vulns.mjsView on unpkg · L46A bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
scripts/release.mjs#virtual:normalized:round1View on unpkgThis package version adds a dangerous source file absent from the previous stored version; route for source-aware review.
src/core/pty-support.mjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/core/pty-support.mjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
scripts/release_helper.mjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
runner/title-runner.mjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/core/code-refs.mjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/core/pty-scroll.mjsView on unpkgThis report applies to @zhuxixi/pi-agent-board@0.10.1.
See version security history for other recorded verdicts.
Evidence last updated: .
Package defines install-time lifecycle scripts.
package.jsonView on unpkg · L54Package source references child process execution.
runner/state-runner.mjsView on unpkg · L8Package source invokes a package manager install command at runtime.
scripts/patch-vulns.mjsView on unpkg · L46A bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
scripts/release.mjs#virtual:normalized:round1View on unpkgThis package version adds a dangerous source file absent from the previous stored version; route for source-aware review.
src/core/pty-support.mjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/core/pty-support.mjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
scripts/release_helper.mjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
runner/title-runner.mjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/core/code-refs.mjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/core/pty-scroll.mjsView on unpkgPackage source references weak cryptographic algorithms.
src/core/auto-state.mjsView on unpkg · L25