Investigate malicious npm packages and AI-agent policy findings. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 9 Oct 2026, 21:54 UTC. Ordered by latest scan.
The package has a concrete automatic postinstall chain that modifies consumer package-manager and AI-agent configuration, including reviewer-suppression instructions. No benign user comma...
The lifecycle hook automatically and forcibly writes behavior-bearing files into broad, external AI-agent discovery locations. Although no exfiltration or remote execution was found, this...
The automatic postinstall hook mutates a foreign consumer project's Claude Code skills and deletes existing skills. This meets the install-time AI-agent control-surface abuse policy despi...
The automatic postinstall hook modifies broad foreign AI-agent configuration surfaces and the user environment. This meets the install-hook abuse policy even without confirmed secret theft.