An agentic coding tool tasked with running a seemingly benign GitHub repository could execute a malicious payload that is ...
This commit was created on GitHub.com and signed with GitHub’s verified signature.