Review AI-agent capability abuse and control hijacking, including changes to agent configuration, instructions, or permissions. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 10 Oct 2026, 02:37 UTC. Ordered by latest scan.
The package has a concrete automatic install-time chain that modifies global AI-agent instructions and configuration, rather than requiring an explicit user setup action. The injected con...
The global postinstall hook mutates a foreign, broad AI-agent control surface and executes a remote installer without consent. Its guards limit exposure but do not remove the concrete ins...
The automatic postinstall performs unconsented mutation of the Claude Code plugin control surface and starts persistent services. This is concrete lifecycle abuse, irrespective of the ben...
The automatic lifecycle hook modifies broad third-party AI-agent control surfaces and enables a package-controlled Codex plugin and MCP server. This meets the install-hook abuse blocking...