Unified npm bootstrap for the Yaver agent, SDK injection, and local-first developer runtime
LPM flags this version as an AI-agent control-surface risk. A global npm installation runs a postinstall hook that downloads a Yaver agent, installs competing coding-agent CLIs, and registers Yaver MCP integrations in their configurations without an explicit user command. It can also alter host security settings when installed as root.
Package defines install-time lifecycle scripts.
package.jsonView on unpkgInstall-time lifecycle script is not statically allowlisted and needs review.
package.jsonView on unpkgPackage source references child process execution.
src/hermesc-runtime.jsView on unpkg · L24A single source file combines environment access, network access, and code or shell execution; review context before blocking.
src/hermesc-runtime.jsView on unpkg · L23Source file is highly similar to a previously finalized malicious package; route for source-aware review.
src/hermesc-runtime.jsView on unpkgA manifest entrypoint or package-local install chain reaches persistence behavior.
src/postinstall.jsView on unpkg · L10Package source references dynamic require/import behavior.
src/analyzer.jsView on unpkg · L1Source downloads or fetches remote code and executes it.
src/commands/desktop.jsView on unpkg · L15A package entrypoint or install-time lifecycle script reaches a source file with blocking dangerous behavior.
src/commands/desktop.jsView on unpkg · L15Source file is highly similar to a previously finalized malicious package; route for source-aware review.
src/agent-runtime.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/commands/run.jsView on unpkgPackage source invokes a package manager install command at runtime.
src/postinstall.jsView on unpkg · L150Source file is highly similar to a previously finalized malicious package; route for source-aware review.
src/postinstall.jsView on unpkgSource writes installer persistence such as shell profile or service configuration.
src/postinstall.jsView on unpkg · L10Source file is highly similar to a previously finalized malicious package; route for source-aware review.
src/commands/desktop.jsView on unpkgPackage defines install-time lifecycle scripts.
package.jsonView on unpkg · L15Install-time lifecycle script is not statically allowlisted and needs review.
package.jsonView on unpkg · L15Package source references dynamic require/import behavior.
src/analyzer.jsView on unpkg · L1Source file is highly similar to a previously finalized malicious package; route for source-aware review.
src/agent-runtime.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
src/commands/run.jsView on unpkgPackage source references child process execution.
src/hermesc-runtime.jsView on unpkg · L24A single source file combines environment access, network access, and code or shell execution; review context before blocking.
src/hermesc-runtime.jsView on unpkg · L23Source file is highly similar to a previously finalized malicious package; route for source-aware review.
src/hermesc-runtime.jsView on unpkgSource writes installer persistence such as shell profile or service configuration.
src/postinstall.jsView on unpkg · L10A manifest entrypoint or package-local install chain reaches persistence behavior.
src/postinstall.jsView on unpkg · L10Package source invokes a package manager install command at runtime.
src/postinstall.jsView on unpkg · L150Source file is highly similar to a previously finalized malicious package; route for source-aware review.
src/postinstall.jsView on unpkgSource downloads or fetches remote code and executes it.
src/commands/desktop.jsView on unpkg · L15A package entrypoint or install-time lifecycle script reaches a source file with blocking dangerous behavior.
src/commands/desktop.jsView on unpkg · L15Source file is highly similar to a previously finalized malicious package; route for source-aware review.
src/commands/desktop.jsView on unpkg