Review AI-agent capability abuse and control hijacking, including changes to agent configuration, instructions, or permissions. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 10 Oct 2026, 06:19 UTC. Ordered by latest scan.
The package embeds instructions intended to make an AI defer to its opaque analysis rather than independently inspect source, which is agent-control manipulation. Its per-call host finger...
The explicit CLI trigger lowers accidental-install risk, but the source directly disables Claude permission checks and accepts workspace trust before installing agent plugins. That is a c...
The package uses npm postinstall to silently modify foreign AI-agent configuration and install recurring hooks. This meets the policy for unconsented lifecycle mutation of a broad AI-agen...
The package performs automatic postinstall mutation of several unrelated user-level AI-agent configurations and installs hooks that execute its runtime. This is a concrete unconsented con...