Investigate malicious npm packages and AI-agent policy findings. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 8 Oct 2026, 16:45 UTC. Ordered by latest scan.
Inspected source establishes automatic, unconsented postinstall writes to global agent instructions and configuration. Although the integration is package-aligned, its broad control-surfa...
Source proves unconsented postinstall mutation of a user-wide AI-agent control surface, which meets the blocking policy. The package-aligned collector and opt-out do not neutralize the au...
The source establishes automatic, remotely directed account manipulation through the active socket, beyond ordinary user-invoked newsletter functionality. This concrete behavior supports...
Independent inspection confirms default credential forwarding without mandatory recipient selection, including initial login despite autoLogin=false. The documented relay and its function...