NurCLI - fully loaded multi-provider coding agent (TUI, vision, tools, sandbox, skills). One command installs the native binary: npx nur-cli
LPM treats this as warn-only first-party agent extension lifecycle risk. Installing the package runs a postinstall shim that fetches a native binary from GitHub Releases and executes it with install. The binary is not in this package, is not pinned to 0.37.3, and is not checksum-verified, so what install changes on disk cannot be confirmed from this source.
Package defines install-time lifecycle scripts.
package.jsonView on unpkgInstall-time lifecycle script is not statically allowlisted and needs review.
package.jsonView on unpkgnpm postinstall runs node bin.js --ensure and swallows errors with exit 0.
package.jsonView on unpkg · L31Source file is highly similar to a previously finalized malicious package; route for source-aware review.
bin.jsView on unpkgSource fingerprint signature matches a known malicious package signature; route for source-aware review.
bin.jsView on unpkgThe shim downloads an unpinned GitHub release binary (latest, else v0.31.0) with no checksum.
bin.jsView on unpkg · L24The shim downloads an unpinned GitHub release binary (latest, else v0.31.0) with no checksum.
bin.jsView on unpkg · L100This report applies to nur-cli@0.37.3.
See version security history for other recorded verdicts.
Evidence last updated: .
Package defines install-time lifecycle scripts.
package.jsonView on unpkg · L31Install-time lifecycle script is not statically allowlisted and needs review.
package.jsonView on unpkg · L31npm postinstall runs node bin.js --ensure and swallows errors with exit 0.
package.jsonView on unpkg · L31The shim downloads an unpinned GitHub release binary (latest, else v0.31.0) with no checksum.
bin.jsView on unpkg · L24The shim downloads an unpinned GitHub release binary (latest, else v0.31.0) with no checksum.
bin.jsView on unpkg · L100Source file is highly similar to a previously finalized malicious package; route for source-aware review.
bin.jsView on unpkgSource fingerprint signature matches a known malicious package signature; route for source-aware review.
bin.jsView on unpkg