Review AI-agent capability abuse and control hijacking, including changes to agent configuration, instructions, or permissions. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 10 Oct 2026, 01:06 UTC. Ordered by latest scan.
The package performs broad AI-agent and project mutations automatically from postinstall, including user-wide Codex changes and detached follow-up execution. This is a concrete unconsente...
The package performs automatic postinstall mutation of a foreign consumer project and AI-agent configuration, then persists execution in that project's lifecycle scripts. This is a concre...
The package uses an automatic lifecycle hook to silently disable a safety instruction in a separately installed AI-agent SDK. The confirmed local CLI endpoint does not offset this concret...
The package performs unconsented postinstall mutation of a consumer project's AI-agent control surface and persists its own lifecycle command. That meets the install-control-surface block...