Review AI-agent capability abuse and control hijacking, including changes to agent configuration, instructions, or permissions. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 8 Oct 2026, 16:02 UTC. Ordered by latest scan.
The automatic global lifecycle chain modifies Claude agent configuration and can remove existing matching paths. This meets the blocking policy for unconsented postinstall mutation of a f...
The automatic lifecycle chain mutates and deletes user AI-agent configuration outside the installed package. This is a concrete unconsented install-hook control-surface attack.
The automatic postinstall invocation of install-hooks --all against existing Claude and Codex directories is a concrete unconsented mutation of a foreign AI-agent control surface. The opt...
The automatic postinstall hook writes to both agent platforms' user skill directories without an explicit user setup action. This meets the policy threshold for unconsented install-time m...