Unified npm bootstrap for the Yaver agent, SDK injection, and local-first developer runtime
LPM flags this version as an AI-agent control-surface risk. A global npm postinstall bootstraps third-party AI coding runners and registers Yaver MCP with Claude Code, Codex, and OpenCode without an explicit user command. It also makes host-level and shell-startup mutations and fetches an external agent binary.
Package defines install-time lifecycle scripts.
package.jsonView on unpkgInstall-time lifecycle script is not statically allowlisted and needs review.
package.jsonView on unpkgPackage source references child process execution.
src/hermesc-runtime.jsView on unpkg · L24A single source file combines environment access, network access, and code or shell execution; review context before blocking.
src/hermesc-runtime.jsView on unpkg · L23Source file is highly similar to a previously finalized malicious package; route for source-aware review.
src/hermesc-runtime.jsView on unpkgA manifest entrypoint or package-local install chain reaches persistence behavior.
src/postinstall.jsView on unpkg · L10Source file is highly similar to a previously finalized malicious package; route for source-aware review.
src/analyzer.jsView on unpkgPackage source references dynamic require/import behavior.
src/analyzer.jsView on unpkg · L1Source downloads or fetches remote code and executes it.
src/commands/desktop.jsView on unpkg · L15A package entrypoint or install-time lifecycle script reaches a source file with blocking dangerous behavior.
src/commands/desktop.jsView on unpkg · L15Source file is highly similar to a previously finalized malicious package; route for source-aware review.
src/commands/run.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/update-check.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/transport.jsView on unpkgPackage source invokes a package manager install command at runtime.
src/postinstall.jsView on unpkg · L150Source writes installer persistence such as shell profile or service configuration.
src/postinstall.jsView on unpkg · L10Package defines install-time lifecycle scripts.
package.jsonView on unpkg · L15Install-time lifecycle script is not statically allowlisted and needs review.
package.jsonView on unpkg · L15Package source references dynamic require/import behavior.
src/analyzer.jsView on unpkg · L1Source file is highly similar to a previously finalized malicious package; route for source-aware review.
src/commands/run.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/update-check.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/transport.jsView on unpkgPackage source references child process execution.
src/hermesc-runtime.jsView on unpkg · L24A single source file combines environment access, network access, and code or shell execution; review context before blocking.
src/hermesc-runtime.jsView on unpkg · L23Source file is highly similar to a previously finalized malicious package; route for source-aware review.
src/hermesc-runtime.jsView on unpkgSource writes installer persistence such as shell profile or service configuration.
src/postinstall.jsView on unpkg · L10A manifest entrypoint or package-local install chain reaches persistence behavior.
src/postinstall.jsView on unpkg · L10Package source invokes a package manager install command at runtime.
src/postinstall.jsView on unpkg · L150Source file is highly similar to a previously finalized malicious package; route for source-aware review.
src/analyzer.jsView on unpkgSource downloads or fetches remote code and executes it.
src/commands/desktop.jsView on unpkg · L15A package entrypoint or install-time lifecycle script reaches a source file with blocking dangerous behavior.
src/commands/desktop.jsView on unpkg · L15