Enforce AI agent skills before every file edit: prompt classifier, skill catalog, and pre-edit gate.
LPM flags this version as an AI-agent control-surface risk. Automatic installation modifies OpenCode's user-wide agent control surface without interactive consent. Installed plugins alter system context and tool execution.
Package defines install-time lifecycle scripts.
package.jsonView on unpkgInstall-time lifecycle script is not statically allowlisted and needs review.
package.jsonView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
bin/novahiz.mjsView on unpkgPackage source references dynamic require/import behavior.
bin/novahiz.mjsView on unpkg · L64Source gates dangerous network, credential, or execution behavior behind CI, host, platform, time, or geo fingerprint checks.
install/bootstrap.mjsView on unpkg · L5Source file is highly similar to a previously finalized malicious package; route for source-aware review.
install/bootstrap.mjsView on unpkgSource creates an unconsented AI-agent control surface through install-time mutation or a default unauthenticated remote skill channel.
install/install.mjsView on unpkg · L1Package ships non-JavaScript build or shell helper files.
install/install.shView on unpkgPackage hides binary, compressed, or executable-looking payloads in test/fixture/hidden paths.
mcp/argus/src/fixtures/test_vulnerable.pyView on unpkgA bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
dist/commands/memory.js#virtual:normalized:round1View on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
adapters/opencode/novahiz-plugin.tsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/commands/doctor.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/commands/doctor.tsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
mcp/argus/src/commands/test.mjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
mcp/clepsydre/src/executors.tsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
skills/llm-threat-review/scripts/llm_risk_lint.mjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/commands/second-memory.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
skills/secrets-hygiene/scripts/secret_scan.mjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
skills/skill-authoring/scripts/skill_frontmatter_lint.mjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
skills/skill-eval-loop/scripts/skill_structure_check.mjsView on unpkgThis report applies to novahiz@0.5.2.
See version security history for other recorded verdicts.
Evidence last updated: .
Package defines install-time lifecycle scripts.
package.jsonView on unpkg · L55Install-time lifecycle script is not statically allowlisted and needs review.
package.jsonView on unpkg · L55Source creates an unconsented AI-agent control surface through install-time mutation or a default unauthenticated remote skill channel.
install/install.mjsView on unpkg · L1Package ships non-JavaScript build or shell helper files.
install/install.shView on unpkgPackage hides binary, compressed, or executable-looking payloads in test/fixture/hidden paths.
mcp/argus/src/fixtures/test_vulnerable.pyView on unpkgA bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
dist/commands/memory.js#virtual:normalized:round1View on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
adapters/opencode/novahiz-plugin.tsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/commands/doctor.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/commands/doctor.tsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
mcp/argus/src/commands/test.mjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
mcp/clepsydre/src/executors.tsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
skills/llm-threat-review/scripts/llm_risk_lint.mjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist/commands/second-memory.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
skills/secrets-hygiene/scripts/secret_scan.mjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
skills/skill-authoring/scripts/skill_frontmatter_lint.mjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
skills/skill-eval-loop/scripts/skill_structure_check.mjsView on unpkgPackage source references dynamic require/import behavior.
bin/novahiz.mjsView on unpkg · L64Source file is highly similar to a previously finalized malicious package; route for source-aware review.
bin/novahiz.mjsView on unpkgSource gates dangerous network, credential, or execution behavior behind CI, host, platform, time, or geo fingerprint checks.
install/bootstrap.mjsView on unpkg · L5Source file is highly similar to a previously finalized malicious package; route for source-aware review.
install/bootstrap.mjsView on unpkg