Investigate malicious npm packages and AI-agent policy findings. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 11 Oct 2026, 19:44 UTC. Ordered by latest scan.
The automatic lifecycle hook stages a mutable, unverified remote executable and alters the user's Python environment. The CLI explicitly executes the staged binary, creating a concrete re...
This package contains an enabled default external logging receiver that transmits runtime data, including supplied scan codes, to embedded webhook URLs. The absence of an install hook doe...
The package contains concrete default-on outbound collection of organization identity and runtime event data to a package-controlled endpoint. Although it has an opt-out and no install ho...
This is an unconsented postinstall mutation of a broad, foreign AI-agent control surface, combined with downloaded executable code and unsafe default permissions. The behavior is concrete...