Review AI-agent capability abuse and control hijacking, including changes to agent configuration, instructions, or permissions. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 10 Oct 2026, 16:35 UTC. Ordered by latest scan.
Source establishes an automatic postinstall mutation path into broad third-party AI-agent skill directories. This meets the policy threshold for blocking despite no demonstrated exfiltrat...
Source confirms a postinstall hook that defaults to injecting package-provided agent instructions into three foreign control surfaces. This meets the install-time AI-agent control-hijack...
The package has no confirmed exfiltration or remote payload chain, but its automatic postinstall force-writes foreign, broad AI-agent control surfaces. This meets the block boundary for u...
The inspected postinstall hook performs unconsented mutation of ~/.agents/skills via a global npx skill installation. This meets the install-time AI-agent control-surface blocking policy.