Personal AI assistant powered by Pi, Antigravity, AI-E, Claude, Claude E, Codex, Codex App, Cursor, Grok, Kiro, OpenCode, and Copilot — Web, Terminal, Telegram, and Discord interfaces with 107 built-in skills
npm postinstall automatically downloads and executes a remote Claude installer, then fetches unpinned skills. This is unconsented install-time remote code execution.
Package defines install-time lifecycle scripts.
package.jsonView on unpkgPackage source references child process execution.
dist/bin/postinstall.jsView on unpkg · L24Source gates dangerous network, credential, or execution behavior behind CI, host, platform, time, or geo fingerprint checks.
dist/bin/postinstall.jsView on unpkg · L5Package source references a known benign dynamic code generation pattern.
dist/src/browser/adaptive-fetch/defuddle-extractor.jsView on unpkg · L98Package source references dynamic require/import behavior.
dist/src/agent/jwc-runtime.jsView on unpkg · L31Package source references weak cryptographic algorithms.
dist/src/ide/diff.jsView on unpkg · L7A manifest entrypoint or package-local install chain reaches persistence behavior.
dist/bin/commands/launchd.jsView on unpkg · L9Source writes installer persistence such as shell profile or service configuration.
dist/bin/commands/launchd.jsView on unpkg · L9A single source file combines environment access, network access, and code or shell execution; review context before blocking.
dist/lib/quota-copilot.jsView on unpkg · L7Manifest-trigger-reachable source writes behavior-bearing configuration into a user or project AI-agent control surface.
dist/bin/commands/skill.jsView on unpkgSource contains bidi control or invisible Unicode characters associated with Trojan Source attacks.
public/dist/assets/MilkdownWysiwygEditor-BKOCDI4Z.jsView on unpkg · L142Package source invokes a package manager install command at runtime.
dist/bin/commands/mcp.jsView on unpkg · L11Package ships non-JavaScript build or shell helper files.
scripts/check-deps-online.shView on unpkgA bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
dist/src/browser/adaptive-fetch/vendor/defuddle.iife.min.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/bin/commands/doctor.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/bin/commands/service.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/scripts/fresh-install-smoke.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/src/cli/capability-probe-worker.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/bin/commands/dashboard.jsView on unpkgPackage defines install-time lifecycle scripts.
package.jsonView on unpkg · L55Manifest-trigger-reachable source writes behavior-bearing configuration into a user or project AI-agent control surface.
dist/bin/commands/skill.jsView on unpkgSource contains bidi control or invisible Unicode characters associated with Trojan Source attacks.
public/dist/assets/MilkdownWysiwygEditor-BKOCDI4Z.jsView on unpkg · L142Package source invokes a package manager install command at runtime.
dist/bin/commands/mcp.jsView on unpkg · L11Package ships non-JavaScript build or shell helper files.
scripts/check-deps-online.shView on unpkgA bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
dist/src/browser/adaptive-fetch/vendor/defuddle.iife.min.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/bin/commands/doctor.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/bin/commands/service.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/scripts/fresh-install-smoke.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/src/cli/capability-probe-worker.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/bin/commands/dashboard.jsView on unpkgPackage source references child process execution.
dist/bin/postinstall.jsView on unpkg · L24Source gates dangerous network, credential, or execution behavior behind CI, host, platform, time, or geo fingerprint checks.
dist/bin/postinstall.jsView on unpkg · L5Package source references a known benign dynamic code generation pattern.
dist/src/browser/adaptive-fetch/defuddle-extractor.jsView on unpkg · L98Package source references dynamic require/import behavior.
dist/src/agent/jwc-runtime.jsView on unpkg · L31Package source references weak cryptographic algorithms.
dist/src/ide/diff.jsView on unpkg · L7Source writes installer persistence such as shell profile or service configuration.
dist/bin/commands/launchd.jsView on unpkg · L9A manifest entrypoint or package-local install chain reaches persistence behavior.
dist/bin/commands/launchd.jsView on unpkg · L9A single source file combines environment access, network access, and code or shell execution; review context before blocking.
dist/lib/quota-copilot.jsView on unpkg · L7