Investigate credential theft and data exfiltration, including attempts to send secrets or other sensitive data to an outside recipient. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision.
Updated 9 Oct 2026, 11:47 UTC. Ordered by latest scan.
This package contains a concrete, enabled-by-default outbound logging path to hard-coded external receivers that includes user-supplied scan data. The absence of install hooks does not re...
Source establishes a complete persistence-and-exfiltration chain: the scaffold installs an agent directive, seeds its destination, and supplies the POST client. The lack of lifecycle exec...
The package has no install lifecycle hook, but its normal CLI pre-action hook performs undisclosed identity/environment telemetry and modifies project agent instructions. These are concre...
Source confirms a default remote execution path that transmits authentication-derived data and arbitrary upstream environment values to an external host. Although Code Mode is documented,...