Review AI-agent capability abuse and control hijacking, including changes to agent configuration, instructions, or permissions. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 10 Oct 2026, 01:53 UTC. Ordered by latest scan.
The automatic postinstall hook modifies the consuming repository's Claude Code instruction surface. This meets the policy threshold for malicious install-hook abuse even though no network...
The automatic global installation of a separate AI agent is concrete install-time behavior, not required for package extraction or ordinary dependency setup. Its later default automatic-a...
The package has a concrete automatic install-time chain that force-upgrades registered foreign projects and mutates broad AI-agent control surfaces. This meets the install-control-surface...
The automatic global-install hook performs remote shell execution and unconsented Codex marketplace/plugin mutation. Its guards limit scope but do not provide user consent for this broad...