npm · registry.npmjs.org
@getmcpm/cli
Llm Injection Payload: AI-agent-directed instruction adjacent to credential exfil — prompt-injection payload (Shai-Hulud / SANDWORM_MODE). imperative="Ignore all previous instructions" target=".ssh/id_rsa"
Why PkgRadar flagged 0.10.1
| Severity | Signal | Evidence |
|---|---|---|
| high | Llm Injection Payload | AI-agent-directed instruction adjacent to credential exfil — prompt-injection payload (Shai-Hulud / SANDWORM_MODE). imperative="Ignore all previous instructions" target=".ssh/id_rsa" · package/dist/runner-GA67S7C5.js |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
0.10.1 | High risk | 13 | 2026-06-14 |
0.10.0 | High risk | 13 | 2026-06-14 |
0.9.0 | Review | 1 | 2026-06-10 |
0.8.1 | Review | 1 | 2026-06-08 |
0.8.0 | Review | 1 | 2026-06-02 |
0.7.1 | Review | 1 | 2026-06-02 |
0.7.0 | Review | 1 | 2026-06-01 |
0.5.0 | Review | 1 | 2026-06-01 |
0.6.0 | Review | 1 | 2026-06-01 |
Block this in CI
pkgradar gate --ecosystem npm @getmcpm/[email protected]