Review AI-agent capability abuse and control hijacking, including changes to agent configuration, instructions, or permissions. These reports include LPM Firewall detections. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 11 Oct 2026, 16:48 UTC. Ordered by latest scan.
Although much of the behavior is package-aligned and documented, the default MCP-server startup path performs unconsented AI-agent control-surface writes from a remote-controlled vault/fa...
Native binary download is package-aligned for a CLI wrapper, but executing that binary during postinstall to refresh bundled agent skills is unconsented lifecycle AI-agent control-surface...
The JS source does not show credential theft or arbitrary exfiltration, but it does perform unconsented install-time execution specifically aimed at refreshing agent skills. Under the fir...
Static inspection found no install/import malware in the library bundle, but the shipped .claude local permission file is a concrete unconsented AI-agent control-surface risk that can exp...