@dezkareid/ai-team
Unknown developer
Threat Summary
Key Security Threats
YARA rule match: -postinstall_file_manipulation
/tmp/extract-b3d5c3e3d6ec073eb41ba2031a4eae3170b02539c8cf0e91d8e730e477539ce5-3680295793/AGENTS.md
YARA rule match: -postinstall_registry_modification
/tmp/extract-b3d5c3e3d6ec073eb41ba2031a4eae3170b02539c8cf0e91d8e730e477539ce5-3680295793/AGENTS.md
YARA rule match: -postinstall_system_command
/tmp/extract-b3d5c3e3d6ec073eb41ba2031a4eae3170b02539c8cf0e91d8e730e477539ce5-3680295793/AGENTS.md
MCP tool poisoning risk: CREDENTIAL-ACCESS-dist/mcp-server/index.js-20920
dist/mcp-server/index.js:20920
YARA rule match: -postinstall_system_command
/tmp/extract-b3d5c3e3d6ec073eb41ba2031a4eae3170b02539c8cf0e91d8e730e477539ce5-3680295793/README.md
All Findings (265)
View all 265 security findings
YARA rule match: -postinstall_file_manipulation
YARA rule match: -postinstall_registry_modification
YARA rule match: -postinstall_system_command
MCP tool poisoning risk: CREDENTIAL-ACCESS-dist/mcp-server/index.js-20920
YARA rule match: -postinstall_system_command
YARA rule match: -postinstall_system_command
YARA rule match: -postinstall_network_communication
YARA rule match: -postinstall_obfuscation
YARA rule match: -postinstall_file_manipulation
YARA rule match: -postinstall_network_communication
YARA rule match: -postinstall_file_download
YARA rule match: -postinstall_registry_modification
YARA rule match: -postinstall_system_command
YARA rule match: -postinstall_persistence_mechanism
YARA rule match: -postinstall_crypto_operations
YARA rule match: -postinstall_system_command
YARA rule match: -postinstall_system_command
MCP tool poisoning risk: FILESYSTEM-ACCESS-dist/mcp-server/index.js-6465
YARA rule match: -postinstall_system_command
XIOC detected Domain: wscomponent.secure
XIOC detected Domain: inst.constructor.name
XIOC detected URL: https://github.com/dezkareid/ai-team#readme
XIOC detected SHA1 Hash: 47339c03c143bb4ec01a26e721a1b8fe66634ebe
XIOC detected URL: https://github.com/mafintosh/is-my-json-valid/blob/master/formats.js
XIOC detected URL: http://stackoverflow.com/questions/201323/using-a-regular-expression-to-validate-an-email-address#answer-8829363
XIOC detected URL: https://tools.ietf.org/html/rfc3339#appendix-C
XIOC detected URL: http://jmrware.com/articles/2009/uri_regexp/URI_regex.html
XIOC detected URL: https://example.com/auth'
XIOC detected URL: https://github.com/modelcontextprotocol/modelcontextprotocol/issues/986)
XIOC detected URL: https://github.com/dezkareid/ai-team.git
XIOC detected URL: https://www.safaribooksonline.com/library/view/regular-expressions-cookbook/9780596802837/ch07s16.html
XIOC detected URL: http://tools.ietf.org/html/rfc4122
XIOC detected URL: https://tools.ietf.org/html/rfc6901
XIOC detected URL: https://tools.ietf.org/html/rfc3986#appendix-A
XIOC detected URL: http://tools.ietf.org/html/draft-luff-relative-json-pointer-00
XIOC detected URL: https://spec.openapis.org/oas/v3.0.0#data-types
XIOC detected URL: https://github.com/miguelmota/is-base64
XIOC detected URL: http://json-schema.org/draft-07/schema
XIOC detected URL: http://json-schema.org/schema
XIOC detected URL: http://tools.ietf.org/html/rfc3339#section-5.6
XIOC detected URL: https://tools.ietf.org/html/rfc3339#appendix-A
XIOC detected URL: https://tools.ietf.org/html/rfc6570
XIOC detected URL: https://gist.github.com/dperini/729294
XIOC detected URL: https://mathiasbynens.be/demo/url-regex
XIOC detected URL: https://json-schema.org/draft/2019-09/schema#
XIOC detected URL: https://raw.githubusercontent.com/ajv-validator/ajv/master/lib/refs/data.json#
XIOC detected URL: https://datatracker.ietf.org/doc/html/rfc3986#section-5.2.4
XIOC detected URL: https://raw.githubusercontent.com/ajv-validator/ajv/master/lib/refs/data.json#
XIOC detected URL: https://mathiasbynens.be/notes/javascript-encoding
XIOC detected URL: https://github.com/bestiejs/punycode.js
XIOC detected URL: https://github.com/ajv-validator/ajv/issues/889
XIOC detected URL: https://json-schema.org/draft/2020-12/schema
XIOC detected URL: http://json-schema.org/draft-07/schema#
XIOC detected URL: http://json-schema.org/draft-04/schema#
XIOC detected URL: https://github.com/modelcontextprotocol/modelcontextprotocol/blob/47339c03c143bb4ec01a26e721a1b8fe66634ebe/docs/specification/draft/basic/index.mdx#general-fields)
XIOC detected URL: https://github.com/colinhacks/zod/blob/master/src/types.ts.
XIOC detected URL: https://github.com/colinhacks/zod/issues/2433
XIOC detected URL: https://github.com/colinhacks/zod/commit/9340fd51e48576a75adc919bff65dbc4a5d4c99b
XIOC detected URL: https://thekevinscott.com/emojis-in-javascript/#writing-a-regular-expression
XIOC detected URL: https://stackoverflow.com/questions/7860392/determine-if-string-is-in-base64-using-javascript
XIOC detected URL: https://base64.guru/standards/base64url
XIOC detected URL: https://stackoverflow.com/a/3143231
XIOC detected URL: https://stackoverflow.com/questions/3966484/why-does-modulus-operator-return-fractional-number-in-javascript/31711034#31711034
XIOC detected URL: https://blog.stevenlevithan.com/archives/validate-phone-number#r4-3
XIOC detected URL: http://[$
XIOC detected Domain: registeredresource.name
XIOC detected Domain: stdin.off
XIOC detected Domain: index.js.map
XIOC detected Domain: gmail.com
XIOC detected Email: [email protected]
XIOC detected URL: https://github.com/dezkareid/ai-team
XIOC detected URL: https://stackoverflow.com/a/46181/1550155
XIOC detected Domain: capabilities.tools
XIOC detected Domain: invalidchars.map
XIOC detected Domain: request.params.name
XIOC detected Domain: ref.name
XIOC detected Domain: request.params.argument.name
XIOC detected Domain: skill.md
XIOC detected Domain: params.tools
XIOC detected Domain: c.id
XIOC detected SHA1 Hash: 9340fd51e48576a75adc919bff65dbc4a5d4c99b
XIOC detected Domain: requests.tools
XIOC detected Domain: logginglevelschema.options.map
XIOC detected Domain: validatedrequest.data
XIOC detected Domain: taskvalidationresult.data
XIOC detected Domain: validationresult.data
XIOC detected Domain: it.opts.next
XIOC detected Domain: parentschema.properties
XIOC detected Domain: props.map
XIOC detected Domain: patprops.map
XIOC detected Domain: opts.next
XIOC detected Domain: sch.properties
XIOC detected Domain: fmtdef.compare
XIOC detected Domain: ops.gt
XIOC detected Domain: ops.lt
XIOC detected Domain: cxt.fail
XIOC detected Domain: 1.operators.gt
XIOC detected Domain: 1.operators.lt
XIOC detected Domain: cxt.parentschema.properties
XIOC detected Domain: schema.map
XIOC detected Domain: addrule.call
XIOC detected Domain: keywordmetaschema.call
XIOC detected Domain: 1.getschemarefs.call
XIOC detected Domain: 1.compileschema.call
XIOC detected Domain: definition.post
XIOC detected Domain: addbeforerule.call
XIOC detected Domain: 1.resolveref.call
XIOC detected Domain: compileasync.call
XIOC detected Domain: checkloaded.call
XIOC detected Domain: loadmissingschema.call
XIOC detected Domain: loadschema.call
XIOC detected Domain: getschenv.call
XIOC detected Domain: 1.resolveschema.call
XIOC detected Domain: checkkeyword.call
XIOC detected Domain: getmetaschemaoptions.call
XIOC detected Domain: addinitialformats.call
XIOC detected Domain: addinitialkeywords.call
XIOC detected Domain: addinitialschemas.call
XIOC detected Domain: datarefschema.id
XIOC detected Domain: runcompileasync.call
XIOC detected Domain: loadmetaschema.call
XIOC detected Domain: relative.host
XIOC detected Domain: base.host
XIOC detected Domain: cmpts.host
XIOC detected Domain: cmpts.secure
XIOC detected Domain: parsed.host
XIOC detected Domain: o.int
XIOC detected Domain: checkoptions.call
XIOC detected Domain: resolveschema.call
XIOC detected Domain: getjsonpointer.call
XIOC detected Domain: output.zone
XIOC detected Domain: ipv6.zone
XIOC detected Domain: component.host
XIOC detected Domain: target.host
XIOC detected Domain: resource.name
XIOC detected Domain: rules.post
XIOC detected Domain: updates.name
XIOC detected Domain: this.fail
XIOC detected Domain: getcompilingschema.call
XIOC detected Domain: resolve.call
XIOC detected Domain: inlineorcompile.call
XIOC detected Domain: compileschema.call
XIOC detected Domain: def.compile.call
XIOC detected Domain: it.data
XIOC detected Domain: subschema.data
XIOC detected Domain: cb.post
XIOC detected Domain: addref.call
XIOC detected Domain: addanchor.call
XIOC detected Domain: opts.code.es
XIOC detected Domain: extscope.name
XIOC detected Domain: gen.name
XIOC detected Domain: cxt.it
XIOC detected Domain: 1.default.data
XIOC detected Domain: gen.property
XIOC detected Domain: properties.map
XIOC detected Domain: def.macro.call
XIOC detected Domain: message.message.id
XIOC detected Domain: 1.name
XIOC detected Domain: this.opts.es
XIOC detected Domain: 2.name
XIOC detected Domain: this.to
XIOC detected Domain: opts.es
XIOC detected Domain: scope.name
XIOC detected Domain: message.id
XIOC detected Domain: errormessage.error.data
XIOC detected Domain: date.now
XIOC detected Domain: request.id
XIOC detected Domain: response.id
XIOC detected Domain: response.error.data
XIOC detected Domain: parseresult.data
XIOC detected Domain: options.name
XIOC detected Domain: refs.target
XIOC detected Domain: strategy.map
XIOC detected Domain: zodpatterns.email
XIOC detected Domain: actualkeys.map
XIOC detected Domain: actualvalues.map
XIOC detected Domain: result.properties
XIOC detected Domain: inst.gt
XIOC detected Domain: inst.lt
XIOC detected Domain: inst.int
XIOC detected Domain: inst.safe
XIOC detected Domain: values.map
XIOC detected Domain: inst.in
XIOC detected Domain: clientcapabilities.sampling.tools
XIOC detected Domain: regexes.map
XIOC detected Domain: mime.map
XIOC detected Domain: json.properties
XIOC detected Domain: def.items.map
XIOC detected Domain: checks.map
XIOC detected Domain: default.md
XIOC detected Domain: readme.md
XIOC detected Domain: this.it
XIOC detected Domain: meta.id
XIOC detected Domain: ctx.io
XIOC detected Domain: inputs.target
XIOC detected Domain: pm.id
XIOC detected Domain: ctx.target
XIOC detected Domain: schema.id
XIOC detected Domain: lines.map
XIOC detected Domain: content.map
XIOC detected Domain: r.data
XIOC detected Domain: catchall.run
XIOC detected Domain: def.options.map
XIOC detected Domain: patterns.map
XIOC detected Domain: keyresult.issues.map
XIOC detected Domain: def.rest
XIOC detected Domain: newctx.data
XIOC detected Domain: def.in
XIOC detected Domain: inst.name
XIOC detected Domain: issue.errors.map
XIOC detected Domain: zod.run
XIOC detected Domain: result.issues.map
XIOC detected Domain: result.data
XIOC detected Domain: schema.items.map
XIOC detected Domain: results.map
XIOC detected Domain: options.map
XIOC detected Domain: issues.map
XIOC detected Domain: sharedvalue.data
XIOC detected Domain: merged.data
XIOC detected Domain: zodparsedtype.map
XIOC detected Domain: zodparsedtype.date
XIOC detected Domain: this.name
XIOC detected Domain: issue.unionerrors.map
XIOC detected Domain: ctx.data
XIOC detected Domain: this.data
XIOC detected Domain: input.data
XIOC detected Domain: mathiasbynens.be
XIOC detected Domain: gist.github.com
XIOC detected Domain: www.safaribooksonline.com
XIOC detected Domain: spec.openapis.org
XIOC detected Domain: jmrware.com
XIOC detected Domain: object.prototype.hasownproperty.call
XIOC detected Domain: array.map
XIOC detected Domain: agents.md
XIOC detected Domain: github.com
XIOC detected Domain: stackoverflow.com
XIOC detected Domain: thekevinscott.com
XIOC detected Domain: base64.guru
XIOC detected Domain: blog.stevenlevithan.com
XIOC detected Domain: json-schema.org
XIOC detected Domain: enterprise.md
XIOC detected Domain: outcomes.md
XIOC detected Domain: architecture-principles.md
XIOC detected Domain: personal-website.md
XIOC detected Domain: collecstory.md
XIOC detected Domain: inst.email
XIOC detected Domain: inst.date
XIOC detected URL: https://github.com/dezkareid/ai-team/issues
MCP tool poisoning risk: CODE-SMELL-dist/mcp-server/index.js-21003
MCP tool poisoning risk: CODE-SMELL-dist/mcp-server/index.js-20948
MCP tool poisoning risk: CODE-SMELL-dist/mcp-server/index.js-21004
MCP tool poisoning risk: CODE-SMELL-dist/mcp-server/index.js-20971
MCP tool poisoning risk: CODE-SMELL-dist/mcp-server/index.js-16556
HASH-92d5f62c52da3634
HASH-8cd1de6c542c60b1
HASH-a502cb2dd3653b60
HASH-73dbf425aa8cf950
HASH-cfcc06e2375c3a57
HASH-b4f27c0895bad47e
HASH-3cd6341bc6fb3f00
HASH-5cc634b5410c2663
HASH-3ce430591166cb3a
HASH-6d895c434e47c163
HASH-71e20558d4addb94
HASH-a8d43b7441692816
Recommended Action
This extension has significant security concerns that warrant careful review. Consider uninstalling or finding a safer alternative. If you must use it, limit the permissions and monitor for suspicious activity.