Haansi CLI - Session collector and MCP server for Claude Code & OpenAI Codex
Review flagged AI-agent configuration or capability changes. This remains warn-only unless evidence shows foreign-agent hijack through preinstall/install/postinstall, hidden persistence, exfiltration, remote code execution, or other concrete malicious behavior.
Source fetches a remote non-code asset, decodes its contents, and dynamically executes the decoded payload.
dist/haansi.jsView on unpkg · L41A package entrypoint or install-time lifecycle script reaches a source file with blocking dangerous behavior.
dist/haansi.jsView on unpkgSource launches a detached bundled service that exposes a broad-bound HTTP listener.
dist/haansi.jsView on unpkg · L41A manifest entrypoint or package-local install chain reaches persistence behavior.
dist/haansi.jsView on unpkg · L41Source writes installer persistence such as shell profile or service configuration.
dist/haansi.jsView on unpkg · L41Package source references weak cryptographic algorithms.
dist/haansi.jsView on unpkg · L41This report applies to haansi@0.1.33.
See version security history for other recorded verdicts.
Evidence last updated: .
Source fetches a remote non-code asset, decodes its contents, and dynamically executes the decoded payload.
dist/haansi.jsView on unpkg · L41A package entrypoint or install-time lifecycle script reaches a source file with blocking dangerous behavior.
dist/haansi.jsView on unpkgSource launches a detached bundled service that exposes a broad-bound HTTP listener.
dist/haansi.jsView on unpkg · L41A manifest entrypoint or package-local install chain reaches persistence behavior.
dist/haansi.jsView on unpkg · L41Source writes installer persistence such as shell profile or service configuration.
dist/haansi.jsView on unpkg · L41Package source references weak cryptographic algorithms.
dist/haansi.jsView on unpkg · L41