Sovereign AI Agent Desktop Daemon
OpenSSF/OSV advisory MAL-2026-10751 confirms this npm version as malicious. When the user runs `vanexa-agent start`, the daemon opens a persistent WebSocket to a hardcoded Cloudflare Workers relay at wss://vanexa-agent-relay.hanazaki542.workers.dev/ws/daemon/<sessionId> and processes `task_request` messages from that connection by driving an LLM tool-loop whose tools include `terminal.exec` and `terminal.exec_background`, which invoke `spawn('/bin/bash', ['-c', args.command])` (or `cmd.exe...
Package source references dynamic require/import behavior.
src/tools/registry.jsView on unpkg · L74Package source executes code through a VM context API.
src/tools/executeProceduralMedia.jsView on unpkg · L2Package ships high-entropy non-source blobs.
vanexa-agent-1.0.0.tgzView on unpkgPackage ships compressed or archive-like blobs.
vanexa-agent-1.0.0.tgzView on unpkgPackage ships a nested archive or MCP bundle that was inventoried but not recursively analyzed.
vanexa-agent-1.0.0.tgzView on unpkgPackage source references dynamic require/import behavior.
src/tools/registry.jsView on unpkg · L74Package ships high-entropy non-source blobs.
vanexa-agent-1.0.0.tgzView on unpkgPackage ships compressed or archive-like blobs.
vanexa-agent-1.0.0.tgzView on unpkgPackage ships a nested archive or MCP bundle that was inventoried but not recursively analyzed.
vanexa-agent-1.0.0.tgzView on unpkgPackage source executes code through a VM context API.
src/tools/executeProceduralMedia.jsView on unpkg · L2