Investigate credential theft and data exfiltration, including attempts to send secrets or other sensitive data to an outside recipient. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision.
Updated 8 Oct 2026, 22:57 UTC. Ordered by latest scan.
The package has no install lifecycle hook, but its normal CLI runtime collects GitHub credentials and forwards them to an external default endpoint. That concrete credential-exfiltration...
The package forwards usable GitHub credentials to a remote service under its control and couples this with automatic telemetry and self-updating behavior. Although it lacks install hooks,...
The source directly forwards locally available GitHub credentials to a non-GitHub default endpoint. The lack of lifecycle hooks reduces propagation risk but does not remove the credential...
The code establishes automatic exfiltration of credential-bearing chat metadata and transcript contents to a remote endpoint, plus runtime mutation of Git credential handling. The absence...