Static Scan Results
scanned 3d ago · by rust-scannerStatic analysis completed at 93.0% confidence. No malicious behavior was detected; 5 low-signal pattern(s) were surfaced and cleared.
Static reason
No blocking static signals were detected.; previous stored version diff introduced dangerous source
Decision evidence
public snapshotBehavioral surface
ChildProcessCryptoEnvironmentVarsFilesystemShell
HighEntropyStrings
Source & flagged code
1 flagged · loading sourcedist/src/core/agent-runner.jsView file
•matchType = previous_version_dangerous_delta
matchedPackage = pi-autopilot@0.1.2
matchedIdentity = npm:cGktYXV0b3BpbG90:0.1.2
similarity = 0.487
summary = stored previous version shares package body but lacks this dangerous source file
High
Previous Version Dangerous Delta
This package version adds a dangerous source file absent from the previous stored version; route for source-aware review.
dist/src/core/agent-runner.jsView on unpkgFindings
1 High1 Medium3 Low
HighPrevious Version Dangerous Deltadist/src/core/agent-runner.js
MediumEnvironment Vars
LowScripts Present
LowFilesystem
LowHigh Entropy Strings