Review AI-agent capability abuse and control hijacking, including changes to agent configuration, instructions, or permissions. These reports include LPM Firewall detections. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 10 Oct 2026, 19:07 UTC. Ordered by latest scan.
The package’s global postinstall directly installs persistent command hooks into Claude Code’s user configuration and launches background persistence. This meets the block threshold regar...
This meets the install-control-surface block criterion: unconsented postinstall mutation of broad foreign AI-agent configurations. Runtime provider networking appears feature-aligned and...
Direct source inspection confirms automatic cross-platform agent configuration writes plus Claude Code permission expansion during postinstall. This meets the install-control-surface bloc...
The package has a concrete install-time chain that silently modifies ~/.claude/settings.json and registers execution hooks. This meets the block policy for unconsented postinstall mutatio...