Review AI-agent capability abuse and control hijacking, including changes to agent configuration, instructions, or permissions. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 9 Oct 2026, 16:34 UTC. Ordered by latest scan.
The automatic lifecycle hook rewrites third-party AI-agent security controls, including authentication and sandbox behavior. This is concrete install-hook abuse with a persistent capabili...
The package uses an automatic install lifecycle to mutate foreign, broad AI-agent control surfaces and inject persistent agent instructions. This is concrete install-hook abuse under the...
This is a concrete automatic install-time mutation of upstream AI-agent authentication and control code. The later launcher further weakens user agent permissions, so the package meets th...
The package has a concrete automatic postinstall chain that broadly mutates foreign AI-agent control surfaces, including when unconfigured. This meets the install-hook abuse blocking boun...