Review AI-agent capability abuse and control hijacking, including changes to agent configuration, instructions, or permissions. These reports include LPM Firewall detections. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 11 Oct 2026, 09:44 UTC. Ordered by latest scan.
The package performs a concrete, unconsented postinstall modification of OpenCode configuration and makes it load plugin paths supplied by a remotely downloaded runtime. The adjacent chec...
Source inspection confirms a concrete postinstall chain that injects package content into shared AI-agent directories and installs external skills globally. Under the install-control-surf...
This is an unconsented install-time mutation of a foreign AI-agent control surface, coupled with an external payload bootstrap. Documentation makes the behavior less stealthy but does not...
The package's own source confirms a concrete automatic postinstall chain that stages remote code and rewrites a foreign OpenCode configuration. The checksum does not independently constra...