Review AI-agent capability abuse and control hijacking, including changes to agent configuration, instructions, or permissions. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 8 Oct 2026, 21:02 UTC. Ordered by latest scan.
The automatic postinstall hook mutates global Claude and Codex configuration and registers a lifecycle command outside the consumer project. This is concrete unconsented install-time AI-a...
The package uses an automatic npm lifecycle hook to alter several unrelated AI-agent instruction surfaces without a user command or consent. This meets the install-time AI-agent control-s...
The automatic lifecycle script installs a foreign AI-agent CLI and persistently changes user shell and application state. This concrete install-time control-surface mutation meets the blo...
This is active runtime prompt-based control hijacking, not inert documentation. Although there is no npm install hook, the package injects steering into an agent's system prompt when its...