Investigate credential theft and data exfiltration, including attempts to send secrets or other sensitive data to an outside recipient. These reports include LPM Firewall detections. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision.
Updated 9 Oct 2026, 09:17 UTC. Ordered by latest scan.
Source confirms a default remote execution path that transmits authentication-derived data and arbitrary upstream environment values to an external host. Although Code Mode is documented,...
The package embeds credentials and automatically configures authenticated telemetry that exports identifying workflow metadata to a fixed external service. This is concrete data exfiltrat...
A hard-coded production credential combined with a default remote provider creates a concrete, unconsented runtime data-egress path. This is more than the scanner's generic network findin...
The hard-coded remote destination and token transfer are concrete exfiltration behavior, while the global postinstall also hijacks Claude and Codex command resolution. Guarding the hook t...