Review AI-agent capability abuse and control hijacking, including changes to agent configuration, instructions, or permissions. These reports include LPM Firewall detections. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 11 Oct 2026, 13:19 UTC. Ordered by latest scan.
Source inspection confirms unconsented npm postinstall mutation of the user's Codex control surface, which the policy treats as blocking even though the functionality is package-aligned a...
Source inspection confirms unconsented postinstall mutation of a project-level OpenCode skill directory, which matches the firewall block policy for broad AI-agent control-surface writes....
Source inspection confirms automatic postinstall mutation of .opencode/skills, which matches the block policy for unconsented npm lifecycle mutation of a foreign/broad AI-agent control su...
The concrete malicious behavior is the unconsented postinstall write into broad/foreign AI-agent control surfaces, which the policy says to block. The network and CLI API behavior otherwi...