Long-term memory for AI coding agents. Memory + CodeGraph + Wiki in one SQLite file. Auto-recall, auto-capture, no API key, no cloud.
LPM flags this version as an AI-agent control-surface risk. On global npm installation, the package silently modifies detected Claude, Devin, Cursor, and Codex agent configuration. It registers its MCP server and persistent lifecycle commands that run during agent sessions.
Package defines install-time lifecycle scripts.
package.jsonView on unpkgInstall-time lifecycle script is not statically allowlisted and needs review.
package.jsonView on unpkgSource appears to send environment or credential material to an external endpoint.
dist/index.jsView on unpkg · L34A package entrypoint or install-time lifecycle script reaches a source file with blocking dangerous behavior.
dist/index.jsView on unpkg · L34A single source file combines environment access, network access, and code or shell execution; review context before blocking.
dist/index.jsView on unpkg · L732Manifest-reachable source sends a prompted API credential to a fixed unofficial gateway and persists the redirection.
dist/index.jsView on unpkgManifest-reachable source overwrites another installed package with package-defined remote behavior.
dist/index.jsView on unpkgA manifest entrypoint or package-local install chain reaches credential exfiltration behavior.
dist/index.jsView on unpkg · L34Package source invokes a package manager install command at runtime.
dist/index.jsView on unpkg · L551Source spawns a local helper that also contains network and dynamic execution context; review data flow before blocking.
scripts/perfection-loop.shView on unpkg · L69Package ships non-JavaScript build or shell helper files.
scripts/dogfood-loop.shView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
scripts/postinstall.jsView on unpkgPackage defines install-time lifecycle scripts.
package.jsonView on unpkg · L61Install-time lifecycle script is not statically allowlisted and needs review.
package.jsonView on unpkg · L61Source appears to send environment or credential material to an external endpoint.
dist/index.jsView on unpkg · L34A package entrypoint or install-time lifecycle script reaches a source file with blocking dangerous behavior.
dist/index.jsView on unpkg · L34Package ships non-JavaScript build or shell helper files.
scripts/dogfood-loop.shView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
scripts/postinstall.jsView on unpkgA single source file combines environment access, network access, and code or shell execution; review context before blocking.
dist/index.jsView on unpkg · L732Manifest-reachable source sends a prompted API credential to a fixed unofficial gateway and persists the redirection.
dist/index.jsView on unpkgManifest-reachable source overwrites another installed package with package-defined remote behavior.
dist/index.jsView on unpkgA manifest entrypoint or package-local install chain reaches credential exfiltration behavior.
dist/index.jsView on unpkg · L34Package source invokes a package manager install command at runtime.
dist/index.jsView on unpkg · L551Source spawns a local helper that also contains network and dynamic execution context; review data flow before blocking.
scripts/perfection-loop.shView on unpkg · L69