Decision RecordActivePublished without chair review

Response to a credential-stealing npm package

Malicious npm package response

Reader challenge

Challenge this conclusion

Contest a specific conclusion. A human editor reviews every challenge — nothing here is published automatically.

Security check loading…
Confidence
High
Section support
High confidence · 0/8 backed · 2 gaps · panel
Severity
High
Assessed severity
Panel
AI roles · 1 disagreement
Freshness · v1
Last updated 1 day ago
Last revised 2026-09-01
Active3 evidence references · Published 01 Sep 2026 · Daily RoundtableServer-rendered freshness may trail the latest update by the page cache window.
Current position

Immediately inventory environments for the malicious package and determine whether it executed. If execution is confirmed, rotate potentially exposed developer and cloud credentials and invalidate affected sessions.

Public guidance

Current public guidance · the full record

Current public value version · v1
01

What to do now

At a glance

The edition's authoritative action board carries no action for this record's subjects — no What to do now guidance.

02

Why now

Weak

The evidence recorded through 2026-09-01 describes a credential-stealing npm package and explicitly supports immediate inventory.

If @7nohe/openapi-react-query-codegen executed in a development or build environment, developer and cloud credentials accessible there may require rotation. Waiting for exact affected versions would delay the investigation even though package presence and execution can be checked now.

03

Who is affected

Under review

Developers whose workstations or development environments contain @7nohe/openapi-react-query-codegen may have developer credentials exposed if it executed.

Continuous-integration and build-runner operators must determine whether the package ran where cloud credentials or active sessions were accessible. Cloud account owners must rotate potentially exposed credentials and invalidate affected sessions when execution is confirmed.

Because affected versions are absent, maintainers cannot yet limit this investigation to named releases.

04

What supports this

Partially supported
  1. Public incident summary — support: its excerpt states, “Malicious npm package steals developer and cloud credentials.” 2. Evidence review of the recorded interaction and incident material — support: it identifies a credential-stealing npm package and explicitly recommends immediate inventory followed by credential rotation when malicious execution is confirmed. 3. Recorded npm retrieval — context only: its excerpt names @7nohe/openapi-react-query-codegen and reports search results, but supplies no affected versions, hashes, or substantive containment findings. 4. Quarantine review — insufficient evidence: repository and runner quarantine language was traced to a separate Composer campaign. 5. Release-blocking review — evidence gap: precise blocking cannot be implemented without affected npm versions or hashes.
05

How the Roundtable reached this

Under review

The decision scout proposed inventorying @7nohe/openapi-react-query-codegen, quarantining repositories and runners, blocking malicious releases, and rotating credentials after confirmed execution.

The evidence auditors supported immediate inventory and conditional credential rotation but found two limits: quarantine evidence came from a separate Composer campaign, and no affected npm versions or hashes were available for precise blocking. The boundary reviewer endorsed that narrower scope.

The linker found no prior Decision Record to update, and the arbiter selected a new record limited to inventory, investigation, and rotation after confirmed execution.

Positions are generated by AI specialist personas and chaired by Halil Öztürkci.

Panel composition

  • Scout (AI panel role)Scout identified 7 candidate signals.
  • Linker (AI panel role)Linker evaluated 7 relation judgments.
  • Evidence Auditor (AI panel role)Evidence Auditor recorded 15 evidence signals; 8 gaps.
  • Prediction Steward (AI panel role)Prediction Steward accepted 1 prediction and rejected 1 claim.
  • Boundary Reviewer (AI panel role)Boundary Reviewer recorded 11 public/private findings.
  • Arbiter (AI panel role)Arbiter produced 7 decision envelopes.

Key disagreement

Scout (AI panel role)

Package presence alone does not prove that install scripts executed or credentials were taken.

Arbiter outcome

Arbiter outcome: new decision record. The evidence supports immediate inventory and investigation, followed by credential rotation when malicious execution is confirmed. Unsupported quarantine and release-specific blocking claims are excluded.

Candidates considered

Considered 7 candidates · opened 1 · 6 not opened (6 other)

Considered, not opened

Sign in to preview Considered-Not-Opened entries (moves to Pro at launch).

Sign in to preview practitioner entries.

06

What is uncertain

Missing

Finding @7nohe/openapi-react-query-codegen does not establish that its install code executed or that credentials were taken.

The affected release versions and hashes are unknown, so package presence cannot yet be narrowed by version. The available npm evidence also does not establish that repositories or runners require quarantine.

07

What evidence is missing

Missing

The evidence does not provide an authoritative list of affected @7nohe/openapi-react-query-codegen versions or package hashes.

It also lacks npm-specific evidence supporting repository or runner quarantine. Each deployment still needs lockfiles, package-manager logs, build artifacts, runner telemetry, and outbound-activity records to determine whether the package executed and whether credential rotation is triggered.

08

What would change this

Under review

An authoritative list of affected @7nohe/openapi-react-query-codegen versions or hashes would add precise release-blocking instructions.

npm-specific evidence that repositories or runners were compromised would justify quarantine or isolation.

Deployment evidence confirming execution triggers credential rotation and session invalidation; evidence showing the package was present but did not execute leaves the response at inventory and investigation.

09

What to watch next

Under review

Watch lockfiles and package-manager logs for @7nohe/openapi-react-query-codegen, then correlate any match with build artifacts, runner telemetry, install-script execution, and outbound activity.

Treat confirmed execution as the trigger to rotate potentially exposed developer and cloud credentials and invalidate affected sessions. Watch for an authoritative advisory that supplies affected versions or hashes; use that publication as the trigger for precise dependency blocking.

Sources & context

Evidence basis

3 references
Context
Memory chunk
Observed 1 Sept 2026
Context
Interaction
Observed 1 Sept 2026
Revision trail

Public value history

1 event on record
1 value version · 1 update · 0 predictions
  1. 01 Sep 2026Initial public guidanceCurrent guidance

    Created the first public value version for this Decision Record.

Unified Search

Search the public record.