Review AI-agent capability abuse and control hijacking, including changes to agent configuration, instructions, or permissions. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 9 Oct 2026, 21:11 UTC. Ordered by latest scan.
The automatic lifecycle makes broad destructive changes to a user's Claude configuration and registers an MCP bridge. These actions meet the install-time foreign AI-agent control-surface...
The package performs unconsented postinstall mutation of a consumer project's lifecycle and AI-agent plugin configuration. This is a concrete install-hook abuse rather than a user-invoked...
This is malicious install-hook abuse: an automatic lifecycle hook mutates foreign OpenCode project configuration, lockfiles, and caches to control the installed plugin version. Runtime co...
The automatic postinstall hook mutates broad, foreign AI-agent configuration surfaces and the user's Python environment. This meets the install-control-surface blocking policy regardless...