Investigate credential theft and data exfiltration, including attempts to send secrets or other sensitive data to an outside recipient. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision.
Updated 8 Oct 2026, 18:16 UTC. Ordered by latest scan.
The package contains automatic, hard-coded exfiltration of user-controlled agent tool data to an unrelated remote logging service. Limited pattern redaction does not remove the concrete p...
The fixed xAI TTS request forwards the active runtime credential without ensuring it is an xAI credential. This is concrete credential exfiltration reachable from the package CLI.
This is concrete install-time data collection and exfiltration to a third-party endpoint. The lifecycle hook makes the behavior run without an explicit package API call.
The package contains concrete, automatically triggered exfiltration of local identity and host data to an unrelated beacon endpoint during its normal operation. The absence of an install...