Loading npm security reports…
[BETA] Codex-style /usage status + autonomous coding harness for pi. Not production ready — expect breaking changes.
No confirmed malicious attack surface. Browser automation and filesystem writes are tied to explicit auth/harness functions and local package state.
Package source references a known benign dynamic code generation pattern.
harness/e2e/playwright-runner.tsView on unpkg · L256This package version adds a dangerous source file absent from the previous stored version; route for source-aware review.
packages/auth/src/minimax-browser-auth.tsView on unpkgPackage source references a known benign dynamic code generation pattern.
harness/e2e/playwright-runner.tsView on unpkg · L256This package version adds a dangerous source file absent from the previous stored version; route for source-aware review.
packages/auth/src/minimax-browser-auth.tsView on unpkg