Coze Coding Dev SDK - 优雅的多功能 AI SDK,支持图片生成、视频生成、语音合成、语音识别、大语言模型和联网搜索
Runtime reporting captures request bodies and response content, then sends the records to a Coze reporting endpoint. It is not install-time behavior.
This package version adds a dangerous source file absent from the previous stored version; route for source-aware review.
dist/esm/131.mjsView on unpkgA single source file combines environment access, network access, and code or shell execution; review context before blocking.
dist/esm/131.mjsView on unpkg · L1Source combines command execution, command-output handling, and outbound requests; review data flow before blocking.
dist/esm/131.mjsView on unpkg · L1Source reaches cloud instance metadata or link-local credential endpoints.
dist/esm/131.mjsView on unpkg · L1A manifest entrypoint or package-local install chain reaches command-output exfiltration behavior.
dist/cjs/index.jsView on unpkg · L11Package source invokes a package manager install command at runtime.
dist/cjs/index.jsView on unpkg · L34Source file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/cjs/0~634.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/cjs/0~864.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/esm/cli/index.mjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/cjs/0~329.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/cjs/0~710.jsView on unpkgThis report applies to coze-coding-dev-sdk@0.7.32.
See version security history for other recorded verdicts.
Evidence last updated: .
This package version adds a dangerous source file absent from the previous stored version; route for source-aware review.
dist/esm/131.mjsView on unpkgA single source file combines environment access, network access, and code or shell execution; review context before blocking.
dist/esm/131.mjsView on unpkg · L1Source combines command execution, command-output handling, and outbound requests; review data flow before blocking.
dist/esm/131.mjsView on unpkg · L1Source reaches cloud instance metadata or link-local credential endpoints.
dist/esm/131.mjsView on unpkg · L1A manifest entrypoint or package-local install chain reaches command-output exfiltration behavior.
dist/cjs/index.jsView on unpkg · L11Package source invokes a package manager install command at runtime.
dist/cjs/index.jsView on unpkg · L34Source file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/cjs/0~634.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/cjs/0~864.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/esm/cli/index.mjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/cjs/0~329.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/cjs/0~710.jsView on unpkg