Review AI-agent capability abuse and control hijacking, including changes to agent configuration, instructions, or permissions. These reports include LPM Firewall detections. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 11 Oct 2026, 02:34 UTC. Ordered by latest scan.
Direct source inspection confirms unconsented postinstall writes to broad, foreign AI-agent control surfaces. This meets the blocking policy regardless of the package’s stated automation...
The lifecycle path is concrete and reaches global Claude configuration and recurring command hooks. This meets the blocking policy regardless of scanner similarity labels.
Source inspection confirms the scanner’s core finding: a postinstall hook writes root-level AI-agent instruction files in the consuming project. The non-overwrite guard and absence of exf...
The postinstall behavior is concrete, automatic, and targets multiple foreign global agent configurations. This meets the blocking policy even though the package uses package-branded asse...