Command Code, coding agent that continuously learns your coding taste. Best coding agent for open models.
No concrete attack was identified in the inspected source excerpts. The packaged VSIX could not be inspected as readable source.
A single source file combines environment access, network access, and code or shell execution with blocking evidence.
dist/cli.mjsView on unpkg · L1Source executes local commands and sends command output to an external endpoint.
dist/cli.mjsView on unpkg · L1A package entrypoint or install-time lifecycle script reaches a source file with blocking dangerous behavior.
dist/cli.mjsView on unpkg · L1This package version adds a dangerous source file absent from the previous stored version; route for source-aware review.
dist/cli.mjsView on unpkgManifest-reachable source sends a prompted API credential to a fixed unofficial gateway and persists the redirection.
dist/cli.mjsView on unpkgSource exposes local file and command tools to a remote model endpoint.
dist/cli.mjsView on unpkg · L1A manifest entrypoint or package-local install chain reaches command-output exfiltration behavior.
dist/cli.mjsView on unpkg · L1A bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
dist/cli.mjsView on unpkgPackage source references dynamic require/import behavior.
dist/index.mjsView on unpkg · L1Package ships high-entropy non-source blobs.
vsix/commandcode-vscode.vsixView on unpkgPackage ships compressed or archive-like blobs.
vsix/commandcode-vscode.vsixView on unpkgPackage ships a nested archive or MCP bundle that was inventoried but not recursively analyzed.
vsix/commandcode-vscode.vsixView on unpkgThis report applies to command-code@1.78.0.
See version security history for other recorded verdicts.
Evidence last updated: .
A single source file combines environment access, network access, and code or shell execution with blocking evidence.
dist/cli.mjsView on unpkg · L1Source executes local commands and sends command output to an external endpoint.
dist/cli.mjsView on unpkg · L1A package entrypoint or install-time lifecycle script reaches a source file with blocking dangerous behavior.
dist/cli.mjsView on unpkg · L1This package version adds a dangerous source file absent from the previous stored version; route for source-aware review.
dist/cli.mjsView on unpkgManifest-reachable source sends a prompted API credential to a fixed unofficial gateway and persists the redirection.
dist/cli.mjsView on unpkgSource exposes local file and command tools to a remote model endpoint.
dist/cli.mjsView on unpkg · L1A manifest entrypoint or package-local install chain reaches command-output exfiltration behavior.
dist/cli.mjsView on unpkg · L1A bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
dist/cli.mjsView on unpkgPackage ships high-entropy non-source blobs.
vsix/commandcode-vscode.vsixView on unpkgPackage ships compressed or archive-like blobs.
vsix/commandcode-vscode.vsixView on unpkgPackage ships a nested archive or MCP bundle that was inventoried but not recursively analyzed.
vsix/commandcode-vscode.vsixView on unpkgPackage source references dynamic require/import behavior.
dist/index.mjsView on unpkg · L1