cli for blok
Invoking `blokctl login --token` or `blokctl profile --token` sends the supplied token in telemetry. Telemetry also sends a hostname-derived identifier and system metadata by default.
Source spawns a local helper that also contains network and dynamic execution context; review data flow before blocking.
dist/index.jsView on unpkg · L1Source file is highly similar to a previously finalized malicious package; route for source-aware review.
Package source references a known benign dynamic code generation pattern.
dist/commands/create/project.jsView on unpkg · L428Package source references dynamic require/import behavior.
dist/scaffold-repo/triggers/websocket/src/WebSocketTrigger.tsView on unpkg · L381Source sends credentials or rich application records to a package-controlled external receiver enabled by default.
dist/services/posthog.jsView on unpkg · L9A package entrypoint or install-time lifecycle script reaches a source file with blocking dangerous behavior.
dist/services/posthog.jsView on unpkg · L9Package ships non-JavaScript build or shell helper files.
dist/scaffold-repo/sdks/python3/bin/worker.pyView on unpkgPackage hides binary, compressed, or executable-looking payloads in test/fixture/hidden paths.
dist/scaffold-repo/sdks/python3/tests/test_grpc_server.pyView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/commands/build/index.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/commands/create/node.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/commands/install/node.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/commands/publish/node.jsView on unpkgSource spawns a local helper that also contains network and dynamic execution context; review data flow before blocking.
dist/index.jsView on unpkg · L1Source file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/index.jsView on unpkgPackage ships non-JavaScript build or shell helper files.
dist/scaffold-repo/sdks/python3/bin/worker.pyView on unpkgPackage hides binary, compressed, or executable-looking payloads in test/fixture/hidden paths.
dist/scaffold-repo/sdks/python3/tests/test_grpc_server.pyView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/commands/build/index.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/commands/create/node.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/commands/install/node.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/commands/publish/node.jsView on unpkgPackage source references a known benign dynamic code generation pattern.
dist/commands/create/project.jsView on unpkg · L428Package source references dynamic require/import behavior.
dist/scaffold-repo/triggers/websocket/src/WebSocketTrigger.tsView on unpkg · L381Source sends credentials or rich application records to a package-controlled external receiver enabled by default.
dist/services/posthog.jsView on unpkg · L9A package entrypoint or install-time lifecycle script reaches a source file with blocking dangerous behavior.
dist/services/posthog.jsView on unpkg · L9