@adhdev/daemon-core
ADHDev daemon core — CDP, IDE detection, providers, command execution
Supply chain provenance
Status for the latest visible version.
Without SLSA provenance there is no cryptographic link between this tarball and the public source, so a manually published version cannot be tied back to a reviewed commit.
Maintainers
Keywords
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| semgrep | semgrep:new-function-constructor | AI (semgrep): Sandboxed script evaluation feature, consistent with product function. | ai | |
| dependencies | unvetted-dep:@adhdev/mesh-shared | AI (dependencies): Sibling package under same publisher/org, part of monorepo. | ai | |
| semgrep | semgrep:etc-passwd-access | AI (semgrep): Match is inside a comment describing input sanitization, not executed code. | ai | |
| phantom-deps | phantom-dep:conf | AI (phantom-deps): conf used via config file reference, not a direct import; false positive. | ai | |
| semgrep | semgrep:http-module-request | AI (semgrep): HTTP requests target 127.0.0.1 for CDP version endpoint — standard local CDP usage, not telemetry or exfiltration. | ai | |
| semgrep | semgrep:base64-decode | AI (semgrep): Base64 decoding of CDP protocol response data (e.g., screenshots) is standard CDP usage. | ai | |
| semgrep | semgrep:silent-process-exec | AI (semgrep): Spawns process.execPath with process.argv.slice(1) — a self-restart/daemon pattern, not a reverse shell or miner. Stable for this daemon tooling package. | ai | |
| semgrep | semgrep:child-process-import | AI (semgrep): child_process used to run 'which' to check command availability — standard CLI tool pattern. | ai | |
| provenance | no-provenance | AI (provenance): No provenance is common (~88% of npm packages); not a disqualifier on its own for this package. | ai | |
| semgrep | semgrep:dynamic-require | AI (semgrep): Dynamic require in validate.js loads provider plugin files for validation — a legitimate plugin loader pattern. | ai | |
| semgrep | semgrep:silent-process-exec-var | AI (semgrep): Same self-restart pattern as silent-process-exec; detached spawn of the same Node process is a standard daemon restart idiom. | ai | |
| semgrep | semgrep:env-spread | AI (semgrep): Spreading process.env into child process spawn config is standard for CLI tools that need to pass the current environment to subprocesses. | ai | |
| semgrep | semgrep:shady-links-raw-ip | AI (semgrep): All raw IP references are 127.0.0.1 (localhost) for CDP protocol communication — expected behavior for a local browser debugger integration. | ai |
Versions (showing 51 of 363)
| Version | Deps | Published |
|---|---|---|
| 1.0.17 | 12 / 9 | |
| 1.0.16 | 12 / 9 | |
| 1.0.15 | 12 / 9 | |
| 1.0.14 | 12 / 9 | |
| 1.0.13 | 12 / 9 | |
| 1.0.12 | 12 / 9 | |
| 1.0.10 | 12 / 9 | |
| 1.0.9 | 12 / 9 | |
| 1.0.8 | 12 / 9 | |
| 1.0.7 | 12 / 9 | |
| 1.0.6 | 12 / 9 | |
| 1.0.5 | 12 / 9 | |
| 1.0.4 | 12 / 9 | |
| 1.0.3 | 12 / 9 | |
| 1.0.2 | 12 / 9 | |
| 1.0.1 | 12 / 9 | |
| 1.0.0 | 12 / 9 | |
| 0.9.81 | 9 / 6 | |
| 0.9.80 | 9 / 6 | |
| 0.9.79 | 9 / 6 | |
| 0.9.78 | 9 / 6 | |
| 0.9.77 | 9 / 6 | |
| 0.9.76 | 9 / 6 | |
| 0.9.75 | 8 / 5 | |
| 0.9.74 | 8 / 5 | |
| 0.9.73 | 8 / 5 | |
| 0.9.72 | 8 / 5 | |
| 0.9.71 | 8 / 5 | |
| 0.9.70 | 8 / 5 | |
| 0.9.69 | 8 / 5 | |
| 0.9.68 | 8 / 5 | |
| 0.9.67 | 8 / 5 | |
| 0.9.66 | 8 / 5 | |
| 0.9.65 | 8 / 5 | |
| 0.9.64 | 8 / 5 | |
| 0.9.63 | 8 / 5 | |
| 0.9.62 | 8 / 5 | |
| 0.9.61 | 8 / 5 | |
| 0.9.60 | 8 / 5 | |
| 0.9.59 | 8 / 5 | |
| 0.9.58 | 8 / 5 | |
| 0.9.57 | 8 / 5 | |
| 0.9.56 | 8 / 5 | |
| 0.9.55 | 8 / 5 | |
| 0.9.54 | 8 / 5 | |
| 0.9.53 | 8 / 5 | |
| 0.9.52 | 8 / 5 | |
| 0.9.51 | 8 / 5 | |
| 0.9.50 | 8 / 5 | |
| 0.9.49 | 8 / 5 | |
| 0.9.48 | 8 / 5 |
v1.0.17
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.16
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.15
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.14
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.13
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.12
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.10
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.9
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.8
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.7
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.6
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.5
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.4
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.3
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.2
1 finding[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.1
2 findingsThis version has no gitHead field linking it to a source commit, but previous versions did. This suggests the publish environment changed. Published by: vilmire.
[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.
v1.0.0
4 findingsThis version has no gitHead field linking it to a source commit, but previous versions did. This suggests the publish environment changed. Published by: vilmire.
Accessing /etc/passwd or /etc/shadow — credential harvesting on Linux (matched inside a comment — likely documentation, not executed code) 102 | const content = typeof args?.content === 'string' ? args.content : ''; 103 | // Whitelist key chars so a malicious caller can't write > 104 | // ../../etc/passwd. Same charset readUserPromptFile accepts. 105 | if (!key || !/^[a-zA-Z0-9_.-]+$/.test(key)) { 106 | return { success: false, error: 'key must match [a-zA-Z0-9_.-]+' };
Accessing /etc/passwd or /etc/shadow — credential harvesting on Linux (matched inside a comment — likely documentation, not executed code) 14 | * paths are allowed but only when they resolve back inside the same 15 | * provider root — providers can require their sibling helpers but they > 16 | * can't reach `../../../../etc/passwd` through a clever segment. 17 | * 18 | * The hook installs exactly once per process; subsequent `register()` /
[Accepted risk] Package was published without Sigstore provenance. Consider requesting the maintainer enable provenance via CI/CD.