All-in-one multi-agent orchestration for the Pi coding agent — parallel teammate dispatch, goals, plans, knowledge system, MCP/LSP/browser, and cockpit visualization in a single install
LPM treats this as warn-only first-party agent extension lifecycle risk. On npm install, the package changes Pi agent configuration, registers its named companion extensions, and installs Maestro workflow resources. No concrete exfiltration, remote payload, or broad foreign-agent takeover was established.
Package defines install-time lifecycle scripts.
package.jsonView on unpkgInstall-time lifecycle script is not statically allowlisted and needs review.
package.jsonView on unpkgPackage manifest contains a dependency pinned to a remote tarball URL.
package.jsonView on unpkgPackage source references child process execution.
scripts/install-workflows.mjsView on unpkg · L5Package source references shell execution.
src/tools/web-access/credential-source.tsView on unpkg · L3Package source references dynamic require/import behavior.
scripts/simulate-272k-stuck.mjsView on unpkg · L24Package source references weak cryptographic algorithms.
src/tools/browser/manager.tsView on unpkg · L1A single source file combines environment access, network access, and code or shell execution; review context before blocking.
src/mcpx-bridge.tsView on unpkg · L15Source reaches cloud instance metadata or link-local credential endpoints.
src/mcpx-bridge.tsView on unpkg · L15Package ships non-JavaScript build or shell helper files.
optional/skills/scholar-thesis-docx/scripts/audit_docx_ooxml.pyView on unpkgPackage hides binary, compressed, or executable-looking payloads in test/fixture/hidden paths.
.pi/skills/team-swarm/scripts/test_aco.pyView on unpkgThis report applies to pi-maestro-flow@0.22.1.
See version security history for other recorded verdicts.
Evidence last updated: .
Package defines install-time lifecycle scripts.
package.jsonView on unpkg · L10Install-time lifecycle script is not statically allowlisted and needs review.
package.jsonView on unpkg · L10Package manifest contains a dependency pinned to a remote tarball URL.
package.jsonView on unpkgPackage source references weak cryptographic algorithms.
src/tools/browser/manager.tsView on unpkg · L1Package ships non-JavaScript build or shell helper files.
optional/skills/scholar-thesis-docx/scripts/audit_docx_ooxml.pyView on unpkgPackage hides binary, compressed, or executable-looking payloads in test/fixture/hidden paths.
.pi/skills/team-swarm/scripts/test_aco.pyView on unpkgPackage source references child process execution.
scripts/install-workflows.mjsView on unpkg · L5Package source references shell execution.
src/tools/web-access/credential-source.tsView on unpkg · L3Package source references dynamic require/import behavior.
scripts/simulate-272k-stuck.mjsView on unpkg · L24A single source file combines environment access, network access, and code or shell execution; review context before blocking.
src/mcpx-bridge.tsView on unpkg · L15Source reaches cloud instance metadata or link-local credential endpoints.
src/mcpx-bridge.tsView on unpkg · L15