← Home

@inkeep/agents-manage-ui

This is a [Next.js](https://nextjs.org) project bootstrapped with [`create-next-app`](https://nextjs.org/docs/app/api-reference/cli/create-next-app).

6
Versions
SEE LICENSE IN LICENSE.md
License
No
Install Scripts
Verified
Provenance

Supply chain provenance

Status for the latest visible version.

SLSA provenance attestation npm registry signatures No source commit

Maintainers

abraham-inkeepnick-inkeeprobert-inkeepsarah-inkeepandrew-inkeepomar-inkeepmiles-inkeep

Accepted risks

Findings the reviewer chose to accept rather than block on.

SourceRuleReasonAccepted byWhen
phantom-deps phantom-dep:@types/dagre AI (phantom-deps): Type-only dep; stable false positive. ai
phantom-deps phantom-dep:@inkeep/cxkit-react AI (phantom-deps): Same-org package; peer/optional dep pattern common in monorepos. ai
phantom-deps phantom-dep:@inkeep/agents-run-api AI (phantom-deps): Same-org package; stable false positive for this monorepo. ai
phantom-deps phantom-dep:@inkeep/agents-manage-api AI (phantom-deps): Same-org package; stable false positive for this monorepo. ai
phantom-deps phantom-dep:pino-pretty AI (phantom-deps): Config-only reference; stable false positive for this package. ai
phantom-deps phantom-dep:@ai-sdk/react AI (phantom-deps): Config-only reference; stable false positive for this package. ai
source-diff obfuscated-file:.next/standalone/agents-manage-ui/.next/server/chunks/ssr/_0-97as7._.js AI (source-diff): Next.js/Turbopack bundled output; not true obfuscation. ai
source-diff obfuscated-file:.next/standalone/agents-manage-ui/.next/server/chunks/ssr/_0-r9ada._.js AI (source-diff): Next.js/Turbopack bundled output; not true obfuscation. ai
source-diff obfuscated-file:.next/standalone/agents-manage-ui/.next/server/chunks/_0~9g0c3._.js AI (source-diff): Next.js/Turbopack bundled output; not true obfuscation. ai
source-diff net-exec-file:.next/standalone/agents-manage-ui/.next/server/chunks/_0~9g0c3._.js AI (source-diff): Network calls and module loading are normal Next.js server chunk patterns; no hostile destination. ai
source-diff obfuscated-file:.next/standalone/agents-manage-ui/.next/server/chunks/ssr/_0_17v14._.js AI (source-diff): Next.js/Turbopack bundled output; not true obfuscation. ai
phantom-deps phantom-dep:@tanstack/react-query AI (phantom-deps): Bundled into Next.js compiled output; stable false positive for this package. ai
source-diff obfuscated-file:.next/standalone/agents-manage-ui/.next/server/chunks/ssr/_0_2j0hf._.js AI (source-diff): Standard Next.js Turbopack minified chunk; pattern is stable across all versions of this package. ai
phantom-deps phantom-dep:@opentelemetry/sdk-node AI (phantom-deps): Bundled into Next.js compiled output; stable false positive for this package. ai
phantom-deps phantom-dep:@opentelemetry/api AI (phantom-deps): Bundled into Next.js compiled output; stable false positive for this package. ai
source-diff obfuscated-file:.next/standalone/agents-manage-ui/.next/server/chunks/ssr/_0_9xhvq._.js AI (source-diff): Standard Next.js Turbopack minified chunk. ai
source-diff obfuscated-file:.next/standalone/agents-manage-ui/.next/server/chunks/ssr/_0-alhn-._.js AI (source-diff): Standard Next.js Turbopack minified chunk. ai
source-diff obfuscated-file:.next/standalone/agents-manage-ui/.next/server/chunks/ssr/_0-mz~vo._.js AI (source-diff): Standard Next.js Turbopack minified chunk. ai
source-diff obfuscated-file:.next/standalone/agents-manage-ui/.next/server/chunks/_0-nf0-r._.js AI (source-diff): Standard Next.js Turbopack minified chunk. ai
source-diff net-exec-file:.next/standalone/agents-manage-ui/.next/server/chunks/_0-nf0-r._.js AI (source-diff): Sample shows benign support-tool page-matcher config; no dropper behavior. ai
phantom-deps phantom-dep:zod AI (phantom-deps): Next.js standalone build bundles deps into chunks; source imports not visible to static analyzer. ai
phantom-deps phantom-dep:clsx AI (phantom-deps): Bundled into Next.js compiled output; stable false positive for this package. ai
phantom-deps phantom-dep:react-dom AI (phantom-deps): Bundled into Next.js compiled output; stable false positive for this package. ai
phantom-deps phantom-dep:recharts AI (phantom-deps): Bundled into Next.js compiled output; stable false positive for this package. ai
phantom-deps phantom-dep:zustand AI (phantom-deps): Bundled into Next.js compiled output; stable false positive for this package. ai

Versions (showing 6 of 6)

Version Deps Published
0.79.0 85 / 27
0.73.4 85 / 27
0.73.1 87 / 27
0.70.8 80 / 27
0.70.7 80 / 27
0.1.2 57 / 18

v0.70.8

105 findings
HIGH Phantom dependency: cmdk phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: diff phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: nuqs phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: pino phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: dagre phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: shiki phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: nanoid phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: sonner phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: date-fns phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: prettier phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: radix-ui phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: papaparse phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: streamdown phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: better-auth phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: next-themes phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: pino-pretty phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: react-runner phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: ua-parser-js phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: @dnd-kit/core phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: @nangohq/node phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: @xyflow/react phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: monaco-editor phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: @nangohq/types phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: react-colorful phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: tailwind-merge phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: @shikijs/monaco phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: react-hook-form phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: @better-auth/sso phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: react-day-picker phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: @dnd-kit/sortable phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: @nangohq/frontend phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: @dnd-kit/modifiers phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: @dnd-kit/utilities phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: @hookform/resolvers phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: @opentelemetry/core phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: pg-63e85fc611dc39f8 phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: use-stick-to-bottom phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: @tanstack/react-table phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: react-resizable-panels phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: shiki-876776e5b28d95df phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: @opentelemetry/resources phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: class-variance-authority phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: prettier-e474b83217f6e230 phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: @opentelemetry/sdk-trace-base phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: @opentelemetry/context-async-hooks phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: @opentelemetry/semantic-conventions phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: @opentelemetry/core-3123e829e752a303 phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: @opentelemetry/baggage-span-processor phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: import-in-the-middle-6ecbfda1283b1532 phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: require-in-the-middle-a99415fa67232f7f phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: @opentelemetry/exporter-trace-otlp-http phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH Phantom dependency: @opentelemetry/auto-instrumentations-node phantom-deps

Declared in package.json dependencies but never imported in source code. Phantom dependencies may exist solely to execute install scripts or inject transitive malicious code. This was the exact attack vector in the axios compromise (plain-crypto-js).

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/_0~_8ot6._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/_0~02sri._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/_00w3md-._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/_0197xil._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/_037g~l_._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/_03wval4._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/_03z4h64._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/_04cxo7h._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/_090n6fy._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/_0aknlg3._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/_0aorjsf._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/_0ci-12h._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/_0fpblit._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/_0fsrv4x._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/_0gdotq0._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/_0j5csl0._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/_0jbpz~m._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/_0knvtj1._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/_0l5rtr1._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/_0lihirh._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/_0m_p3ow._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/_0m3cf90._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/_0m3id6_._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/_0njb6kg._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/_0s2pri8._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/_0vwr524._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/_0wukj8r._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/_0x5p5r-._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/_10t8vbh._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/_123iqti._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/_13rhjym._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/[root-of-the-server]__0.gthml._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/[root-of-the-server]__01s8go7._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/[root-of-the-server]__02evsu.._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/[root-of-the-server]__03s.qss._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/[root-of-the-server]__04r3ra8._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/[root-of-the-server]__07a~_ln._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/[root-of-the-server]__07znkr5._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/[root-of-the-server]__08_hm10._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/[root-of-the-server]__089idct._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/[root-of-the-server]__0d3b4n8._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/[root-of-the-server]__0ebajk7._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/[root-of-the-server]__0h254di._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New file with network + code execution: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/[root-of-the-server]__0h254di._.js source-diff

Newly added file contains both network calls and dynamic code execution. This is a hallmark of dropper/loader malware.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/[root-of-the-server]__0hpafrd._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/[root-of-the-server]__0i2k784._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/[root-of-the-server]__0j~_wz-._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH New obfuscated file: .next/standalone/agents-manage-ui/.next/server/chunks/ssr/[root-of-the-server]__0l6-0_l._.js source-diff

Newly added source file contains lines over 3000 chars, suggesting minified or obfuscated code. New obfuscated files are a strong attack indicator.

HIGH dll-hijacking-commands: .next/standalone/agents-manage-ui/.next/static/chunks/05n57uje5e_ir.js:1 semgrep

DLL side-loading command detected — potential DLL hijacking > 1 | (globalThis.TURBOPACK||(globalThis.TURBOPACK=[])).push(["object"==typeof document?document.currentScript:void 0,533206,e

HIGH dll-hijacking-commands: .next/standalone/agents-manage-ui/.next/static/chunks/05n57uje5e_ir.js:1 semgrep

DLL side-loading command detected — potential DLL hijacking > 1 | (globalThis.TURBOPACK||(globalThis.TURBOPACK=[])).push(["object"==typeof document?document.currentScript:void 0,533206,e

HIGH dll-hijacking-commands: .next/standalone/agents-manage-ui/.next/static/chunks/05n57uje5e_ir.js:1 semgrep

DLL side-loading command detected — potential DLL hijacking > 1 | (globalThis.TURBOPACK||(globalThis.TURBOPACK=[])).push(["object"==typeof document?document.currentScript:void 0,533206,e

HIGH env-spread: src/lib/actions/__tests__/copilot-token.test.ts:15 semgrep

Spreading entire process.env into an object — may capture all secrets 13 | 14 | describe('getCopilotTokenAction', () => { > 15 | const originalEnv = { ...process.env }; 16 | 17 | beforeEach(() => {

INFO Has SLSA provenance attestation provenance

Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.