AI Agent Task Management Dashboard
No confirmed malicious attack surface. The package is an AI agent task dashboard with expected runtime capabilities: local server, SQLite state, PTY-backed agent sessions, MCP API proxy, git/worktree operations, and optional user-started tunnel.
Package defines install-time lifecycle scripts.
package.jsonView on unpkgInstall-time lifecycle script is not statically allowlisted and needs review.
package.jsonView on unpkgSource contains bidi control or invisible Unicode characters associated with Trojan Source attacks.
dist/web/assets/mermaid-NOHMQCX5-B42ziicV.jsView on unpkg · L38This report applies to agent-tower@0.5.3.
See version security history for other recorded verdicts.
Evidence last updated: .
Package defines install-time lifecycle scripts.
package.jsonView on unpkg · L31Install-time lifecycle script is not statically allowlisted and needs review.
package.jsonView on unpkg · L31Source contains bidi control or invisible Unicode characters associated with Trojan Source attacks.
dist/web/assets/mermaid-NOHMQCX5-B42ziicV.jsView on unpkg · L38