Loading npm security reports…
Pin feedback to UI and trace it to source for coding agents.
Review flagged AI-agent configuration or capability changes. This remains warn-only unless evidence shows foreign-agent hijack through preinstall/install/postinstall, hidden persistence, exfiltration, remote code execution, or other concrete malicious behavior.
`sourcepin init` writes `.agents/skills/sourcepin-feedback/SKILL.md`.
agents/skills/sourcepin-feedback/SKILL.mdView on unpkg`sourcepin init` writes `.agents/skills/sourcepin-feedback/SKILL.md`.
agents/skills/sourcepin-feedback/SKILL.mdView on unpkg