Investigate malicious npm packages and AI-agent policy findings. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 9 Oct 2026, 08:08 UTC. Ordered by latest scan.
This is an unconsented automatic install-time mutation of foreign AI-agent control surfaces. The opt-out and name check do not change that the deletion is triggered by installation.
The package performs destructive, broad consumer-project mutation from an automatic install hook. This is a concrete unconsented install-time attack surface even though the inspected hook...
Postinstall unconditionally mutates the global Claude Code settings file to export prompt and tool content to a package-controlled collector. That is unconsented install-time control of a...
The install hook writes this package into several unrelated AI-agent skill directories and turns on a Codex plugin without a user command. That is an unconsented install-time takeover of...