Review AI-agent capability abuse and control hijacking, including changes to agent configuration, instructions, or permissions. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 10 Oct 2026, 14:40 UTC. Ordered by latest scan.
This is a concrete, unconsented postinstall mutation of broad foreign AI-agent control surfaces. Lack of exfiltration does not remove the install-time agent-control hijack behavior.
The package’s global postinstall directly triggers persistent Claude Code hook injection and daemon startup. This meets the block policy for unconsented install-time mutation of a foreign...
The package performs unconsented postinstall installation of a third-party AI-agent CLI and persistent user-environment changes. This meets the install-time foreign AI-agent control-surfa...
This is a concrete unconsented postinstall mutation of a foreign AI-agent control surface. The absence of exfiltration does not remove that install-time control-surface risk. Product guar...