Review AI-agent capability abuse and control hijacking, including changes to agent configuration, instructions, or permissions. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 8 Oct 2026, 23:11 UTC. Ordered by latest scan.
The postinstall hook writes Claude Code skills into the consumer project's .claude/skills directory without a user command, which is an unconsented install-time mutation of a foreign agen...
Automatic postinstall copies FocalAPI skills into every detected third-party agent skills directory without an explicit connect command. That is unconsented mutation of a foreign and broa...
The automatic installation of a separate vendor's global AI-agent CLI and persistent host configuration mutation creates an unconsented foreign agent control surface. No self-dependency o...
The automatic postinstall hook broadly mutates foreign AI-agent control surfaces, which meets the install-control-surface blocking policy. The absence of a JavaScript network request does...