A local-first web interface for AI coding agents
LPM flags this version as an AI-agent control-surface risk. Installing the package invokes a postinstall hook that changes code in the separately maintained OpenAI Codex SDK. The write is guarded to Windows but occurs without a user command.
Package defines install-time lifecycle scripts.
package.jsonView on unpkgInstall-time lifecycle script is not statically allowlisted and needs review.
package.jsonView on unpkgPackage contains a critical-looking secret pattern.
dist/assets/index-DGH7BEWL.jsView on unpkg · L2GitHub personal access token in dist/assets/index-DGH7BEWL.js
dist/assets/index-DGH7BEWL.jsView on unpkg · L2GitHub personal access token in dist/assets/index-DGH7BEWL.js
dist/assets/index-DGH7BEWL.jsView on unpkg · L5GitHub personal access token in dist/assets/index-DGH7BEWL.js
dist/assets/index-DGH7BEWL.jsView on unpkg · L8GitHub personal access token in dist/assets/index-DGH7BEWL.js
dist/assets/index-DGH7BEWL.jsView on unpkg · L11GitHub personal access token in dist/assets/index-DGH7BEWL.js
dist/assets/index-DGH7BEWL.jsView on unpkg · L14GitHub personal access token in dist/assets/index-DGH7BEWL.js
dist/assets/index-DGH7BEWL.jsView on unpkg · L17GitHub personal access token in dist/assets/index-DGH7BEWL.js
dist/assets/index-DGH7BEWL.jsView on unpkg · L20GitHub personal access token in dist/assets/index-DGH7BEWL.js
dist/assets/index-DGH7BEWL.jsView on unpkg · L23Hardcoded password in dist/assets/index-DGH7BEWL.js
dist/assets/index-DGH7BEWL.jsView on unpkg · L2Hardcoded password in dist/assets/index-DGH7BEWL.js
dist/assets/index-DGH7BEWL.jsView on unpkg · L5Hardcoded password in dist/assets/index-DGH7BEWL.js
dist/assets/index-DGH7BEWL.jsView on unpkg · L8Hardcoded password in dist/assets/index-DGH7BEWL.js
dist/assets/index-DGH7BEWL.jsView on unpkg · L11Hardcoded password in dist/assets/index-DGH7BEWL.js
dist/assets/index-DGH7BEWL.jsView on unpkg · L17Hardcoded password in dist/assets/index-DGH7BEWL.js
dist/assets/index-DGH7BEWL.jsView on unpkg · L20Package source references child process execution.
dist-server/server/shared/claude-cli-path.jsView on unpkg · L1Package source references a known benign dynamic code generation pattern.
dist/assets/vendor-data-DsEZeNPr.jsView on unpkg · L3Package source references dynamic require/import behavior.
dist-server/server/modules/auth/auth.module.jsView on unpkg · L7Package source references weak cryptographic algorithms.
dist-server/server/modules/providers/list/cursor/cursor-sessions.provider.jsView on unpkg · L106Manifest entrypoint contains risky behavior absent from dist/build output.
dist-server/server/index.jsView on unpkg · L6Source gates dangerous network, credential, or execution behavior behind CI, host, platform, time, or geo fingerprint checks.
electron/main.jsView on unpkg · L1Source file is highly similar to a previously finalized malicious package; route for source-aware review.
electron/main.jsView on unpkgSource launches a detached bundled service that exposes a broad-bound HTTP listener.
electron/localServer.jsView on unpkg · L1Source file is highly similar to a previously finalized malicious package; route for source-aware review.
electron/localServer.jsView on unpkgPackage ships non-JavaScript build or shell helper files.
scripts/generate-pwa-icons.ps1View on unpkgA bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
dist-server/scripts/fix-codex-sdk-windows-hide.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist-server/scripts/fix-codex-sdk-windows-hide.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist-server/server/modules/browser-use/browser-use.service.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
server/modules/browser-use/browser-use.service.tsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
electron/serverInstaller.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
scripts/release/build-server-bundle.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist-server/server/modules/agent/agent.routes.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist-server/server/modules/cli/cli.module.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
scripts/fix-codex-sdk-windows-hide.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
server/modules/agent/agent.routes.tsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
server/modules/cli/cli.module.tsView on unpkgPackage defines install-time lifecycle scripts.
package.jsonView on unpkg · L64Install-time lifecycle script is not statically allowlisted and needs review.
package.jsonView on unpkg · L64Package source references child process execution.
dist-server/server/shared/claude-cli-path.jsView on unpkg · L1Source gates dangerous network, credential, or execution behavior behind CI, host, platform, time, or geo fingerprint checks.
electron/main.jsView on unpkg · L1Source file is highly similar to a previously finalized malicious package; route for source-aware review.
electron/main.jsView on unpkgSource launches a detached bundled service that exposes a broad-bound HTTP listener.
electron/localServer.jsView on unpkg · L1Source file is highly similar to a previously finalized malicious package; route for source-aware review.
electron/localServer.jsView on unpkgPackage ships non-JavaScript build or shell helper files.
scripts/generate-pwa-icons.ps1View on unpkgA bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
dist-server/scripts/fix-codex-sdk-windows-hide.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist-server/scripts/fix-codex-sdk-windows-hide.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist-server/server/modules/browser-use/browser-use.service.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
server/modules/browser-use/browser-use.service.tsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
electron/serverInstaller.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
scripts/release/build-server-bundle.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist-server/server/modules/agent/agent.routes.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
dist-server/server/modules/cli/cli.module.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
scripts/fix-codex-sdk-windows-hide.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
server/modules/agent/agent.routes.tsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
server/modules/cli/cli.module.tsView on unpkgPackage contains a critical-looking secret pattern.
dist/assets/index-DGH7BEWL.jsView on unpkg · L2GitHub personal access token in dist/assets/index-DGH7BEWL.js
dist/assets/index-DGH7BEWL.jsView on unpkg · L2GitHub personal access token in dist/assets/index-DGH7BEWL.js
dist/assets/index-DGH7BEWL.jsView on unpkg · L5GitHub personal access token in dist/assets/index-DGH7BEWL.js
dist/assets/index-DGH7BEWL.jsView on unpkg · L8GitHub personal access token in dist/assets/index-DGH7BEWL.js
dist/assets/index-DGH7BEWL.jsView on unpkg · L11GitHub personal access token in dist/assets/index-DGH7BEWL.js
dist/assets/index-DGH7BEWL.jsView on unpkg · L14GitHub personal access token in dist/assets/index-DGH7BEWL.js
dist/assets/index-DGH7BEWL.jsView on unpkg · L17GitHub personal access token in dist/assets/index-DGH7BEWL.js
dist/assets/index-DGH7BEWL.jsView on unpkg · L20GitHub personal access token in dist/assets/index-DGH7BEWL.js
dist/assets/index-DGH7BEWL.jsView on unpkg · L23Hardcoded password in dist/assets/index-DGH7BEWL.js
dist/assets/index-DGH7BEWL.jsView on unpkg · L2Hardcoded password in dist/assets/index-DGH7BEWL.js
dist/assets/index-DGH7BEWL.jsView on unpkg · L5Hardcoded password in dist/assets/index-DGH7BEWL.js
dist/assets/index-DGH7BEWL.jsView on unpkg · L8Hardcoded password in dist/assets/index-DGH7BEWL.js
dist/assets/index-DGH7BEWL.jsView on unpkg · L11Hardcoded password in dist/assets/index-DGH7BEWL.js
dist/assets/index-DGH7BEWL.jsView on unpkg · L17Hardcoded password in dist/assets/index-DGH7BEWL.js
dist/assets/index-DGH7BEWL.jsView on unpkg · L20Package source references a known benign dynamic code generation pattern.
dist/assets/vendor-data-DsEZeNPr.jsView on unpkg · L3Package source references dynamic require/import behavior.
dist-server/server/modules/auth/auth.module.jsView on unpkg · L7Package source references weak cryptographic algorithms.
dist-server/server/modules/providers/list/cursor/cursor-sessions.provider.jsView on unpkg · L106Manifest entrypoint contains risky behavior absent from dist/build output.
dist-server/server/index.jsView on unpkg · L6