engine7@7.1.114: Suspicious npm security report (Warn) | LPM Firewall
Flagged — allowed with a warning
Allowed by default policy, but 27 finding(s) warrant review before installing.
AI Security Reviewscanned 10d ago · by lpm-firewall-ai No confirmed attack surface was identified. The reviewed agent-related paths read or list workspace files rather than changing external agent configuration.
Static reason
One or more suspicious static signals were detected.; source matched previously finalized malicious package; routed for review; source fingerprint signature matched known malicious package; routed for review; previous stored version diff introduced dangerous source
Trigger
No malicious trigger was identified.
Impact
No malicious impact was identified.
Mechanism
No malicious mechanism was identified.
AI rationale
Static inspection found no install lifecycle hook or concrete credential theft, remote payload execution, persistence, or agent-control mutation. The required agent-integration locations perform prompt input and workspace-file reading only.
Decision evidencepublic snapshot AI called this Clean at 91.0% confidence as Benign with low false-positive risk.
Why the final policy warns
The AI recommended clean. Static policy retained a warning. The static scanner classified the package as malicious with confidence of at least 85%. A critical static finding has confidence of at least 90%. These conditions do not mean that the AI confirmed malicious behavior.
Evidence for AI clean decision
The package metadata defines a CLI and module entry point; inspection found no preinstall, install, or postinstall hook. The CLI configuration treats agent-related files as static prompt inputs. The startup bundle only reads an existing workspace AGENTS.md file and records its token estimate. The main bundle contains the same read-only workspace AGENTS.md handling. The bundled brainstorming server defaults to a loopback address. The graph renderer is an explicit command-line utility requiring a supplied skill directory. Behavioral surface
Source ChildProcess Crypto DynamicRequire EnvironmentVars Filesystem Network Shell WebSocket
Source & flagged code19 flagged · loading source 389 // src/hooks/executor.ts
L390: import { spawn } from "child_process";
L391: import { randomUUID } from "node:crypto";
High Child Process
Package source references child process execution.
dist/engine-startup.mjs View on unpkg · L389 3105 }
L3106: cachedShell = { shell: "powershell.exe", args: ["-NoProfile", "-Command"] };
L3107: return cachedShell;
265 try {
L266: const raw = JSON.parse(fs.readFileSync(filePath, "utf-8"));
L267: loadHooksFromConfig(raw);
...
L389: // src/hooks/executor.ts
L390: import { spawn } from "child_process";
L391: import { randomUUID } from "node:crypto";
L392: function parseHookOutput(stdout) {
L393: const trimmed = stdout.trim();
...
L470: const envVars = {
L471: ...process.env,
L472: CLAUDE_PROJECT_DIR: ctx.workspace
...
L474: const command = hook.command;
High Command Output Exfiltration
Source combines command execution, command-output handling, and outbound requests; review data flow before blocking.
dist/engine-startup.mjs View on unpkg · L265 Findings1 Critical 14 High 6 Medium 6 Low
Critical Previous Version Dangerous Delta dist/main.mjs
High Child Process dist/engine-startup.mjs
High Shell dist/engine-startup.mjs
High Credential Redirect Persistence dist/main.mjs
High Entrypoint Foreign Package Code Overwrite dist/cli.mjs
High Command Output Exfiltration dist/engine-startup.mjs
High Cross File Remote Execution Context dist/cli.mjs
High Trigger Reachable Persistence dist/cli.mjs
High Semantic Analysis Limited templates/skills/superpowers/brainstorming/scripts/server.cjs#virtual:normalized:round1
High Known Malware Source Similarity dist/engine-startup.mjs
High Known Malware Source Similarity
Affected versions and remediation This report applies to engine7@7.1.114 .
See version security history for other recorded verdicts.
Review the evidence and your use of engine7@7.1.114 before allowing it. Restrict the permissions described in this report. Choose an independently verified alternative or release. This report does not establish that other versions are safe. Evidence last updated: 2026-09-29 00:36:27.083Z (UTC) .
91% Clean
AI assessment confidence
The AI recommended clean. Static policy retained a warning. The static scanner classified the package as malicious with confidence of at least 85%. A critical static finding has confidence of at least 90%. These conditions do not mean that the AI confirmed malicious behavior.
Package metadata npm Maintainers engine7
Version 7.1.114
Latest on npm 7.1.120
Published Sep 28, 2026
License Apache-2.0
Dependencies 20
Integrity verified
Package size 1.86 MB
Files 273
Runtime surface package.json Entrypoints main → dist/main.mjs bin → engine7
Runtime node >=22 os win32, linux, darwin cpu x64, arm64
Artifact
HighEntropyStrings
UrlStrings
Manifest No manifest risk signals triggered.
scanned 8 file(s), 4.94 MB of source, external domains: 127.0.0.1, accounts.feishu.cn, accounts.larksuite.com, api.anthropic.com, api.deepinfra.com, api.deepseek.com, api.github.com, api.minimaxi.com, api.moonshot.cn, api.tavily.com, api.x.ai, dashscope.aliyuncs.com, fal.run, github.com, ilinkai.weixin.qq.com, novac2c.cdn.weixin.qq.com, open.bigmodel.cn, open.feishu.cn, primeradiant.com, token-plan.cn-beijing.maas.aliyuncs.com, www.apple.com, www.twinsun.top
• matchType = normalized_sha256
matchedPackage = engine7@7.1.112
matchedPath = dist/engine-startup.mjs
matchedIdentity = npm:ZW5naW5lNw:7.1.112
similarity = 1.000
summary = normalized source hash matched finalized malicious source
High Known Malware Source Similarity
Source file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/engine-startup.mjs View on unpkg • matchType = malicious_source_fingerprint_signature
signature = a972f95f45faf154
signatureType = suspicious_hashes
sourceLabel = final_verdict:malicious
matchedPackage = engine7@7.1.112
matchedPath = dist/engine-startup.mjs
matchedIdentity = npm:ZW5naW5lNw:7.1.112
similarity = 1.000
shingleOverlap = 8
summary = package final verdict is malicious
High Known Malware Source Fingerprint Signature
Source fingerprint signature matches a known malicious package signature; route for source-aware review.
dist/engine-startup.mjs View on unpkg 1 const require=(await import('node:module')).createRequire(import.meta.url)
L2: var __defProp = Object.defineProperty;
Medium Dynamic Require
Package source references dynamic require/import behavior.
dist/engine-startup.mjs View on unpkg · L1 265 try {
L266: const raw = JSON.parse(fs.readFileSync(filePath, "utf-8"));
L267: loadHooksFromConfig(raw);
...
L389: // src/hooks/executor.ts
L390: import { spawn } from "child_process";
L391: import { randomUUID } from "node:crypto";
L392: function parseHookOutput(stdout) {
L393: const trimmed = stdout.trim();
...
L470: const envVars = {
L471: ...process.env,
L472: CLAUDE_PROJECT_DIR: ctx.workspace
...
L474: const command = hook.command;
Low Weak Crypto
Package source references weak cryptographic algorithms.
dist/engine-startup.mjs View on unpkg · L265 • Manifest-reachable source resolves another installed package, overwrites its runtime code, and injects package-defined remote behavior.
dist/cli.mjs:
feishu: "https://accounts.feishu.cn",
lark: "https://accounts.larksuite.com"
if (redirectHost) currentBaseUrl = `https://${redirectHost}`;
fs.writeFileSync(credFile, JSON.stringify({ accountId, token, baseUrl, userId }, null, 2), "utf8");
ILINK_BASE_URL = "https://ilinkai.weixin.qq.com";
fs42.writeFileSync(cfgPath, JSON.stringify(raw, null, 2) + "\n", "utf-8");
def.baseUrl = "https://open.bigmodel.cn/api/paas/v4";
def.baseUrl = "https://token-plan.cn-beijing.maas.aliyuncs.com/compatible-mode/v1";
High Entrypoint Foreign Package Code Overwrite
Manifest-reachable source overwrites another installed package with package-defined remote behavior.
dist/cli.mjs View on unpkg 36 Cross-file remote execution chain: dist/cli.mjs spawns dist/main.mjs; helper contains network access plus dynamic code execution.
L36: const url = `${ACCOUNTS_URL[domain]}${REGISTRATION_PATH}`;
L37: const res = await fetch(url, {
L38: method: "POST",
L39: headers: { "Content-Type": "application/x-www-form-urlencoded" },
L40: body: new URLSearchParams(body).toString(),
L41: signal: AbortSignal.timeout(REQUEST_TIMEOUT_MS)
...
L43: if (!res.ok) {
L44: throw new Error(`\u98DE\u4E66\u6CE8\u518C\u63A5\u53E3\u8FD4\u56DE ${res.status}: ${await res.text()}`);
L45: }
...
L189: const timeoutSeconds = options?.timeoutSeconds || 480;
L190: const stateDir = options?.stateDir || path.join(os.homedir?.() || "/tmp", ".engine7");
L191: const onQrCode = options?.onQrCode;
High Cross File Remote Execution Context
Source spawns a local helper that also contains network and dynamic execution context; review data flow before blocking.
dist/cli.mjs View on unpkg · L36 36 Trigger-reachable persistence chain: manifest.bin -> bin/engine7 -> dist/cli.mjs
L36: const url = `${ACCOUNTS_URL[domain]}${REGISTRATION_PATH}`;
L37: const res = await fetch(url, {
L38: method: "POST",
L39: headers: { "Content-Type": "application/x-www-form-urlencoded" },
L40: body: new URLSearchParams(body).toString(),
L41: signal: AbortSignal.timeout(REQUEST_TIMEOUT_MS)
...
L43: if (!res.ok) {
L44: throw new Error(`\u98DE\u4E66\u6CE8\u518C\u63A5\u53E3\u8FD4\u56DE ${res.status}: ${await res.text()}`);
L45: }
...
L189: const timeoutSeconds = options?.timeoutSeconds || 480;
L190: const stateDir = options?.stateDir || path.join(os.homedir?.() || "/tmp", ".engine7");
L191: const onQrCode = options?.onQrCode;
High Trigger Reachable Persistence
A manifest entrypoint or package-local install chain reaches persistence behavior.
dist/cli.mjs View on unpkg · L36 • matchType = normalized_sha256
matchedPackage = engine7@7.1.112
matchedPath = dist/cli.mjs
matchedIdentity = npm:ZW5naW5lNw:7.1.112
similarity = 1.000
summary = normalized source hash matched finalized malicious source
High Known Malware Source Similarity
Source file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/cli.mjs View on unpkg 36 const url = `${ACCOUNTS_URL[domain]}${REGISTRATION_PATH}`;
L37: const res = await fetch(url, {
L38: method: "POST",
L39: headers: { "Content-Type": "application/x-www-form-urlencoded" },
L40: body: new URLSearchParams(body).toString(),
L41: signal: AbortSignal.timeout(REQUEST_TIMEOUT_MS)
...
L43: if (!res.ok) {
L44: throw new Error(`\u98DE\u4E66\u6CE8\u518C\u63A5\u53E3\u8FD4\u56DE ${res.status}: ${await res.text()}`);
L45: }
...
L189: const timeoutSeconds = options?.timeoutSeconds || 480;
L190: const stateDir = options?.stateDir || path.join(os.homedir?.() || "/tmp", ".engine7");
L191: const onQrCode = options?.onQrCode;
Medium Install Persistence
Source writes installer persistence such as shell profile or service configuration.
dist/cli.mjs View on unpkg · L36 • matchType = previous_version_dangerous_delta
matchedPackage = engine7@7.1.107
matchedIdentity = npm:ZW5naW5lNw:7.1.107
similarity = 0.923
summary = stored previous version shares package body but lacks this dangerous source file
Critical Previous Version Dangerous Delta
This package version adds a dangerous source file absent from the previous stored version; route for source-aware review.
dist/main.mjs View on unpkg • Manifest-reachable source captures an API credential, sends it to a fixed unofficial gateway, and persists that redirection in agent or shell configuration.
dist/main.mjs:
fs58.writeFileSync(cfgPath, JSON.stringify(raw, null, 2) + "\n", "utf-8");
`Base URL: ${config2.provider.baseUrl}`,
fs3.writeFileSync(dumpPath, [systemStable, systemDynamic].join("\n\n"), "utf-8");
fs3.writeFileSync(path2.join(opts.workspace, ".context-debug.txt"), lines.join("\n") + "\n", "utf-8");
fs7.writeFileSync(outputPath, "", "utf-8");
fs7.writeFileSync(tmp, JSON.stringify(next, null, 2));
fs7.writeFileSync(tmp, JSON.stringify(pendingNotifications, null, 2), "utf8");
if (process.env.CLAUDE_CODE_MAX_RETRIES) {
High Credential Redirect Persistence
Manifest-reachable source sends a prompted API credential to a fixed unofficial gateway and persists the redirection.
dist/main.mjs View on unpkg • matchType = normalized_sha256
matchedPackage = engine7@7.1.112
matchedPath = dist/main.mjs
matchedIdentity = npm:ZW5naW5lNw:7.1.112
similarity = 1.000
summary = normalized source hash matched finalized malicious source
High Known Malware Source Similarity
Source file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/main.mjs View on unpkg • path = bin/engine7.cmd
kind = build_helper
sizeBytes = 42
magicHex = [redacted]
Medium Ships Build Helper
Package ships non-JavaScript build or shell helper files.
bin/engine7.cmd View on unpkg templates/skills/superpowers/brainstorming/scripts/server.cjs#virtual:normalized:round1 View file • stage = ast_semantic_analysis; reason = ast_parse_error; limitedFiles = 1
High Semantic Analysis Limited
A bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
templates/skills/superpowers/brainstorming/scripts/server.cjs#virtual:normalized:round1 View on unpkg templates/skills/superpowers/brainstorming/scripts/server.cjs View file • matchType = normalized_sha256
matchedPackage = engine7@7.1.112
matchedPath = [redacted].cjs
matchedIdentity = npm:ZW5naW5lNw:7.1.112
similarity = 1.000
summary = normalized source hash matched finalized malicious source
High Known Malware Source Similarity
Source file is highly similar to a previously finalized malicious package; route for source-aware review.
templates/skills/superpowers/brainstorming/scripts/server.cjs View on unpkg templates/skills/superpowers/writing-skills/render-graphs.js View file • matchType = normalized_sha256
matchedPackage = engine7@7.1.112
matchedPath = [redacted]-skills/render-graphs.js
matchedIdentity = npm:ZW5naW5lNw:7.1.112
similarity = 1.000
summary = normalized source hash matched finalized malicious source
High Known Malware Source Similarity
Source file is highly similar to a previously finalized malicious package; route for source-aware review.
templates/skills/superpowers/writing-skills/render-graphs.js View on unpkg dist/main.mjs
High Known Malware Source Similarity dist/cli.mjs
High Known Malware Source Similarity templates/skills/superpowers/brainstorming/scripts/server.cjs
High Known Malware Source Similarity templates/skills/superpowers/writing-skills/render-graphs.js
High Known Malware Source Fingerprint Signature dist/engine-startup.mjs
Medium Dynamic Require dist/engine-startup.mjs
Medium Install Persistence dist/cli.mjs
Medium Ships Build Helper bin/engine7.cmd
Medium Structural Risk Force Deep Review
Low Non Install Lifecycle Scripts
Low Weak Crypto dist/engine-startup.mjs
8.67 MB · 273 files
2 signature(s)
Install lifecycle prepublishOnly
Behavioral surface ChildProcess Crypto DynamicRequire EnvironmentVars Filesystem Network Shell WebSocket HighEntropyStrings UrlStrings Manifest: clean
LPM.dev Registry
Source & flagged code19 flagged 389 // src/hooks/executor.ts
L390: import { spawn } from "child_process";
L391: import { randomUUID } from "node:crypto";
High Child Process
Package source references child process execution.
dist/engine-startup.mjs View on unpkg · L389 3105 }
L3106: cachedShell = { shell: "powershell.exe", args: ["-NoProfile", "-Command"] };
L3107: return cachedShell;
265 try {
L266: const raw = JSON.parse(fs.readFileSync(filePath, "utf-8"));
L267: loadHooksFromConfig(raw);
...
L389: // src/hooks/executor.ts
L390: import { spawn } from "child_process";
L391: import { randomUUID } from "node:crypto";
L392: function parseHookOutput(stdout) {
L393: const trimmed = stdout.trim();
...
L470: const envVars = {
L471: ...process.env,
L472: CLAUDE_PROJECT_DIR: ctx.workspace
...
L474: const command = hook.command;
High Command Output Exfiltration
Source combines command execution, command-output handling, and outbound requests; review data flow before blocking.
dist/engine-startup.mjs View on unpkg · L265 • matchType = normalized_sha256
matchedPackage = engine7@7.1.112
matchedPath = dist/engine-startup.mjs
matchedIdentity = npm:ZW5naW5lNw:7.1.112
similarity = 1.000
summary = normalized source hash matched finalized malicious source
High Known Malware Source Similarity
Source file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/engine-startup.mjs View on unpkg • matchType = malicious_source_fingerprint_signature
signature = a972f95f45faf154
signatureType = suspicious_hashes
sourceLabel = final_verdict:malicious
matchedPackage = engine7@7.1.112
matchedPath = dist/engine-startup.mjs
matchedIdentity = npm:ZW5naW5lNw:7.1.112
similarity = 1.000
shingleOverlap = 8
summary = package final verdict is malicious
High Known Malware Source Fingerprint Signature
Source fingerprint signature matches a known malicious package signature; route for source-aware review.
dist/engine-startup.mjs View on unpkg 1 const require=(await import('node:module')).createRequire(import.meta.url)
L2: var __defProp = Object.defineProperty;
Medium Dynamic Require
Package source references dynamic require/import behavior.
dist/engine-startup.mjs View on unpkg · L1 265 try {
L266: const raw = JSON.parse(fs.readFileSync(filePath, "utf-8"));
L267: loadHooksFromConfig(raw);
...
L389: // src/hooks/executor.ts
L390: import { spawn } from "child_process";
L391: import { randomUUID } from "node:crypto";
L392: function parseHookOutput(stdout) {
L393: const trimmed = stdout.trim();
...
L470: const envVars = {
L471: ...process.env,
L472: CLAUDE_PROJECT_DIR: ctx.workspace
...
L474: const command = hook.command;
Low Weak Crypto
Package source references weak cryptographic algorithms.
dist/engine-startup.mjs View on unpkg · L265 • Manifest-reachable source resolves another installed package, overwrites its runtime code, and injects package-defined remote behavior.
dist/cli.mjs:
feishu: "https://accounts.feishu.cn",
lark: "https://accounts.larksuite.com"
if (redirectHost) currentBaseUrl = `https://${redirectHost}`;
fs.writeFileSync(credFile, JSON.stringify({ accountId, token, baseUrl, userId }, null, 2), "utf8");
ILINK_BASE_URL = "https://ilinkai.weixin.qq.com";
fs42.writeFileSync(cfgPath, JSON.stringify(raw, null, 2) + "\n", "utf-8");
def.baseUrl = "https://open.bigmodel.cn/api/paas/v4";
def.baseUrl = "https://token-plan.cn-beijing.maas.aliyuncs.com/compatible-mode/v1";
High Entrypoint Foreign Package Code Overwrite
Manifest-reachable source overwrites another installed package with package-defined remote behavior.
dist/cli.mjs View on unpkg 36 Cross-file remote execution chain: dist/cli.mjs spawns dist/main.mjs; helper contains network access plus dynamic code execution.
L36: const url = `${ACCOUNTS_URL[domain]}${REGISTRATION_PATH}`;
L37: const res = await fetch(url, {
L38: method: "POST",
L39: headers: { "Content-Type": "application/x-www-form-urlencoded" },
L40: body: new URLSearchParams(body).toString(),
L41: signal: AbortSignal.timeout(REQUEST_TIMEOUT_MS)
...
L43: if (!res.ok) {
L44: throw new Error(`\u98DE\u4E66\u6CE8\u518C\u63A5\u53E3\u8FD4\u56DE ${res.status}: ${await res.text()}`);
L45: }
...
L189: const timeoutSeconds = options?.timeoutSeconds || 480;
L190: const stateDir = options?.stateDir || path.join(os.homedir?.() || "/tmp", ".engine7");
L191: const onQrCode = options?.onQrCode;
High Cross File Remote Execution Context
Source spawns a local helper that also contains network and dynamic execution context; review data flow before blocking.
dist/cli.mjs View on unpkg · L36 • matchType = previous_version_dangerous_delta
matchedPackage = engine7@7.1.107
matchedIdentity = npm:ZW5naW5lNw:7.1.107
similarity = 0.923
summary = stored previous version shares package body but lacks this dangerous source file
Critical Previous Version Dangerous Delta
This package version adds a dangerous source file absent from the previous stored version; route for source-aware review.
dist/main.mjs View on unpkg • Manifest-reachable source captures an API credential, sends it to a fixed unofficial gateway, and persists that redirection in agent or shell configuration.
dist/main.mjs:
fs58.writeFileSync(cfgPath, JSON.stringify(raw, null, 2) + "\n", "utf-8");
`Base URL: ${config2.provider.baseUrl}`,
fs3.writeFileSync(dumpPath, [systemStable, systemDynamic].join("\n\n"), "utf-8");
fs3.writeFileSync(path2.join(opts.workspace, ".context-debug.txt"), lines.join("\n") + "\n", "utf-8");
fs7.writeFileSync(outputPath, "", "utf-8");
fs7.writeFileSync(tmp, JSON.stringify(next, null, 2));
fs7.writeFileSync(tmp, JSON.stringify(pendingNotifications, null, 2), "utf8");
if (process.env.CLAUDE_CODE_MAX_RETRIES) {
High Credential Redirect Persistence
Manifest-reachable source sends a prompted API credential to a fixed unofficial gateway and persists the redirection.
dist/main.mjs View on unpkg • matchType = normalized_sha256
matchedPackage = engine7@7.1.112
matchedPath = dist/main.mjs
matchedIdentity = npm:ZW5naW5lNw:7.1.112
similarity = 1.000
summary = normalized source hash matched finalized malicious source
High Known Malware Source Similarity
• path = bin/engine7.cmd
kind = build_helper
sizeBytes = 42
magicHex = [redacted]
Medium Ships Build Helper
Package ships non-JavaScript build or shell helper files.
bin/engine7.cmd View on unpkg templates/skills/superpowers/brainstorming/scripts/server.cjs#virtual:normalized:round1 View file • stage = ast_semantic_analysis; reason = ast_parse_error; limitedFiles = 1
High Semantic Analysis Limited
A bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
templates/skills/superpowers/brainstorming/scripts/server.cjs#virtual:normalized:round1 View on unpkg templates/skills/superpowers/brainstorming/scripts/server.cjs View file • matchType = normalized_sha256
matchedPackage = engine7@7.1.112
matchedPath = [redacted].cjs
matchedIdentity = npm:ZW5naW5lNw:7.1.112
similarity = 1.000
summary = normalized source hash matched finalized malicious source
High Known Malware Source Similarity
Source file is highly similar to a previously finalized malicious package; route for source-aware review.
templates/skills/superpowers/brainstorming/scripts/server.cjs View on unpkg templates/skills/superpowers/writing-skills/render-graphs.js View file • matchType = normalized_sha256
matchedPackage = engine7@7.1.112
matchedPath = [redacted]-skills/render-graphs.js
matchedIdentity = npm:ZW5naW5lNw:7.1.112
similarity = 1.000
summary = normalized source hash matched finalized malicious source
High Known Malware Source Similarity
Source file is highly similar to a previously finalized malicious package; route for source-aware review.
templates/skills/superpowers/writing-skills/render-graphs.js View on unpkg 36
Trigger-reachable persistence chain: manifest.bin -> bin/engine7 -> dist/cli.mjs
L36: const url = `${ACCOUNTS_URL[domain]}${REGISTRATION_PATH}`;
L37: const res = await fetch(url, {
L38: method: "POST",
L39: headers: { "Content-Type": "application/x-www-form-urlencoded" },
L40: body: new URLSearchParams(body).toString(),
L41: signal: AbortSignal.timeout(REQUEST_TIMEOUT_MS)
...
L43: if (!res.ok) {
L44: throw new Error(`\u98DE\u4E66\u6CE8\u518C\u63A5\u53E3\u8FD4\u56DE ${res.status}: ${await res.text()}`);
L45: }
...
L189: const timeoutSeconds = options?.timeoutSeconds || 480;
L190: const stateDir = options?.stateDir || path.join(os.homedir?.() || "/tmp", ".engine7");
L191: const onQrCode = options?.onQrCode;
High Trigger Reachable Persistence
A manifest entrypoint or package-local install chain reaches persistence behavior.
dist/cli.mjs View on unpkg · L36 • matchType = normalized_sha256
matchedPackage = engine7@7.1.112
matchedPath = dist/cli.mjs
matchedIdentity = npm:ZW5naW5lNw:7.1.112
similarity = 1.000
summary = normalized source hash matched finalized malicious source
High Known Malware Source Similarity
Source file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/cli.mjs View on unpkg 36 const url = `${ACCOUNTS_URL[domain]}${REGISTRATION_PATH}`;
L37: const res = await fetch(url, {
L38: method: "POST",
L39: headers: { "Content-Type": "application/x-www-form-urlencoded" },
L40: body: new URLSearchParams(body).toString(),
L41: signal: AbortSignal.timeout(REQUEST_TIMEOUT_MS)
...
L43: if (!res.ok) {
L44: throw new Error(`\u98DE\u4E66\u6CE8\u518C\u63A5\u53E3\u8FD4\u56DE ${res.status}: ${await res.text()}`);
L45: }
...
L189: const timeoutSeconds = options?.timeoutSeconds || 480;
L190: const stateDir = options?.stateDir || path.join(os.homedir?.() || "/tmp", ".engine7");
L191: const onQrCode = options?.onQrCode;
Medium Install Persistence
Source writes installer persistence such as shell profile or service configuration.
dist/cli.mjs View on unpkg · L36 Source file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/main.mjs