Review AI-agent capability abuse and control hijacking, including changes to agent configuration, instructions, or permissions. These reports include LPM Firewall detections. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 10 Oct 2026, 03:22 UTC. Ordered by latest scan.
The automatic lifecycle hook executes mutable remote code and performs hook registration without a separate user setup action. This meets the install-time AI-agent control-surface abuse b...
This is a concrete unconsented postinstall mutation of multiple foreign and broad AI-agent control surfaces, plus consumer-project mutation. The lifecycle behavior meets the publish-block...
The package uses an automatic postinstall to alter consumer-project and AI-agent configuration, then deliberately persists those changes after installation. This is concrete install-hook...
This release has a concrete, unconsented postinstall path that mutates a broad OpenCode AI-agent control surface and causes the package to be loaded. The package-aligned Google endpoints...