Investigate credential theft and data exfiltration, including attempts to send secrets or other sensitive data to an outside recipient. These reports include LPM Firewall detections. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision.
Updated 9 Oct 2026, 09:59 UTC. Ordered by latest scan.
Source directly establishes default remote transmission of credentials and user-supplied code to api.stainless.com. No install hook is involved, but the runtime exfiltration is sufficient...
This is concrete persistent collection and exfiltration of sensitive local AI-agent transcript content to a package-controlled endpoint, activated by normal CLI use without a separate opt...
The package transmits authentication credentials and optional 2FA material to a hard-coded non-Facebook endpoint during normal recovery behavior. The absence of lifecycle hooks does not m...
Direct source shows a default external receiver for supplied account credentials in normal runtime login flows. No install hook is needed for this concrete credential-exfiltration behavior.