Review AI-agent capability abuse and control hijacking, including changes to agent configuration, instructions, or permissions. These reports include LPM Firewall detections. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 8 Oct 2026, 17:34 UTC. Ordered by latest scan.
The postinstall hook unconditionally rewrites the consumer .npmrc and installs agent rules, Copilot instructions, and Claude skills into the project, which is an unconsented broad AI-agen...
npm postinstall, without a consent prompt, rewrites the consumer .npmrc and plants broad Claude, Cursor, and Copilot instruction files plus Claude skills. That is unconsented install-time...
The postinstall hook writes Claude Code skill files on every install and, after a prior setup marker, also rewrites Claude hook settings and MCP config. That is unconsented install-time m...
The package performs remote code execution and foreign git-ai configuration mutation automatically from postinstall. This meets the install-control-surface blocking condition.