Investigate credential theft and data exfiltration, including attempts to send secrets or other sensitive data to an outside recipient. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision.
Updated 9 Oct 2026, 02:44 UTC. Ordered by latest scan.
Source inspection confirms a user-triggered credential-redirection and persistence path to a fixed gateway. The absence of install hooks lowers propagation risk but does not remove the cr...
The source establishes automatic remote export of sensitive email-account metadata and broad diagnostic output during ordinary client use. The bounded workspace-link postinstall hook does...
The default routing of an OpenAI credential to a different fixed gateway is concrete credential exfiltration during normal use. The unchecked executable fallback adds supply-chain executi...
The package contains a default runtime path that transmits account data, including a serialized configuration that may contain IMAP passwords, to an unrelated external host. The absence o...