GitHub Issue and PR automation CLI tool with plugin/hook system for project-specific customizations
LPM flags this version as an AI-agent control-surface risk. Installing the package modifies the user's global Claude Code command surface. It installs AI command instructions that can invoke Bash and package workflows in every project.
Package defines install-time lifecycle scripts.
package.jsonView on unpkgInstall-time lifecycle script is not statically allowlisted and needs review.
package.jsonView on unpkgPackage source references child process execution.
dist/utils/shell.jsView on unpkg · L1Package source references dynamic require/import behavior.
dist/config/index.jsView on unpkg · L67Source appears to send environment or credential material to an external endpoint.
dist/commands/init.jsView on unpkg · L144A package entrypoint or install-time lifecycle script reaches a source file with blocking dangerous behavior.
dist/commands/init.jsView on unpkg · L144Source creates an unconsented AI-agent control surface through install-time mutation or a default unauthenticated remote skill channel.
scripts/postinstall.mjsView on unpkg · L4Package source invokes a package manager install command at runtime.
dist/services/hooks/HookExecutor.jsView on unpkg · L176A bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
dist/commands/clean.js#virtual:normalized:round1View on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/commands/interactive.jsView on unpkgThis package version adds a dangerous source file absent from the previous stored version; route for source-aware review.
dist/commands/login.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/commands/login.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/services/github/GithubAppService.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/utils/github-cli.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/utils/editor.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/services/github/AssetUploadService.jsView on unpkgManifest-reachable source sends a prompted API credential to a fixed unofficial gateway and persists the redirection.
dist/commands/init.jsView on unpkgManifest-trigger-reachable source writes behavior-bearing configuration into a user or project AI-agent control surface.
dist/commands/init.jsView on unpkgA manifest entrypoint or package-local install chain reaches credential exfiltration behavior.
dist/commands/init.jsView on unpkg · L144Package defines install-time lifecycle scripts.
package.jsonView on unpkg · L23Install-time lifecycle script is not statically allowlisted and needs review.
package.jsonView on unpkg · L23Package source references child process execution.
dist/utils/shell.jsView on unpkg · L1Source creates an unconsented AI-agent control surface through install-time mutation or a default unauthenticated remote skill channel.
scripts/postinstall.mjsView on unpkg · L4Package source invokes a package manager install command at runtime.
dist/services/hooks/HookExecutor.jsView on unpkg · L176A bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
dist/commands/clean.js#virtual:normalized:round1View on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/commands/interactive.jsView on unpkgThis package version adds a dangerous source file absent from the previous stored version; route for source-aware review.
dist/commands/login.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/commands/login.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/services/github/GithubAppService.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/utils/github-cli.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/utils/editor.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/services/github/AssetUploadService.jsView on unpkgPackage source references dynamic require/import behavior.
dist/config/index.jsView on unpkg · L67Source appears to send environment or credential material to an external endpoint.
dist/commands/init.jsView on unpkg · L144A package entrypoint or install-time lifecycle script reaches a source file with blocking dangerous behavior.
dist/commands/init.jsView on unpkg · L144Manifest-reachable source sends a prompted API credential to a fixed unofficial gateway and persists the redirection.
dist/commands/init.jsView on unpkgManifest-trigger-reachable source writes behavior-bearing configuration into a user or project AI-agent control surface.
dist/commands/init.jsView on unpkgA manifest entrypoint or package-local install chain reaches credential exfiltration behavior.
dist/commands/init.jsView on unpkg · L144