Review AI-agent capability abuse and control hijacking, including changes to agent configuration, instructions, or permissions. These reports include LPM Firewall detections. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 10 Oct 2026, 02:37 UTC. Ordered by latest scan.
The automatic postinstall performs remote shell execution and changes Codex plugin configuration during installation. Its global-install guard limits exposure but does not establish conse...
The automatic postinstall hook modifies broad, foreign AI-agent control surfaces and creates a fallback agent directory. This meets the install-time AI-agent control-hijack blocking policy.
The lifecycle hook automatically persists package-controlled skills and executable command hooks into the user's global Claude configuration. That concrete install-time agent-control muta...
The lifecycle hook automatically installs a foreign AI-agent CLI and persistently modifies user shell and application locations. This meets the install-hook abuse blocking boundary even t...