Unified Claude Code and OpenAI Codex subscription pooling with quota-aware selection.
A global npm install automatically alters the command resolution and scheduled execution environment for Claude Code and Codex. It also schedules unattended updates that reinstall the package.
Package defines install-time lifecycle scripts.
package.jsonView on unpkgInstall-time lifecycle script is not statically allowlisted and needs review.
package.jsonView on unpkgPackage hides binary, compressed, or executable-looking payloads in test/fixture/hidden paths.
tests/test_selector.pyView on unpkgA bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
bin/claude-accountsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
bin/codexView on unpkgSource fingerprint signature matches a known malicious package signature; route for source-aware review.
bin/cli.mjsView on unpkgThis report applies to claude-multiacc@2.0.32.
See version security history for other recorded verdicts.
Evidence last updated: .
Package defines install-time lifecycle scripts.
package.jsonView on unpkg · L57Install-time lifecycle script is not statically allowlisted and needs review.
package.jsonView on unpkg · L57Package hides binary, compressed, or executable-looking payloads in test/fixture/hidden paths.
tests/test_selector.pyView on unpkgA bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
bin/claude-accountsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
bin/codexView on unpkgSource fingerprint signature matches a known malicious package signature; route for source-aware review.
bin/cli.mjsView on unpkg