Loading npm security reports…
Financial trading & investing agent
LPM treats this as warn-only first-party agent extension lifecycle risk. A declared Pi agent extension activates when the user runs it and performs first-party model/provider setup. No concrete malicious or unconsented install-time attack was found.
Package source references weak cryptographic algorithms.
gui/server/websocket.tsView on unpkg · L1Package source references weak cryptographic algorithms.
gui/server/websocket.tsView on unpkg · L1