Review AI-agent capability abuse and control hijacking, including changes to agent configuration, instructions, or permissions. These reports include LPM Firewall detections. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 8 Oct 2026, 21:21 UTC. Ordered by latest scan.
The automatic lifecycle chain installs and enables package-controlled AI-agent hooks outside the package and consumer project configuration. This meets the blocking policy for unconsented...
The automatic postinstall hook performs broad global AI-agent skill installation and deletion rather than limiting setup to an explicit user action. This meets the install-control-surface...
The automatic global postinstall chain delegates broad AI-client configuration writes to a remotely downloaded binary. This is concrete install-time AI-agent control-surface mutation and...
The package performs automatic postinstall AI-agent configuration rather than requiring an explicit user command. This meets the install-control-surface blocking policy.