Review AI-agent capability abuse and control hijacking, including changes to agent configuration, instructions, or permissions. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 8 Oct 2026, 09:34 UTC. Ordered by latest scan.
Source establishes unconsented postinstall mutation of a shared Pi agent instruction file, including a user-directory fallback. This meets the blocking rule for foreign or broad AI-agent...
The source establishes an unconsented postinstall mutation of a shared AI-agent control surface, including a user-wide fallback. Under the supplied policy, this warrants blocking despite...
Source establishes an unconsented postinstall write to a shared AI-agent instruction file, including a user-wide fallback. This meets the blocking control-surface policy despite the task-...
The inspected lifecycle chain performs unconsented mutation of OpenCode's global control surface and removes unrelated global MCP packages. This independently supports blocking, regardles...