global-agent

npm

Is global-agent safe to use?

The latest brin safety scan flagged global-agent v4.0.0 with risk indicators that warrant review. No known CVE vulnerabilities. Trust score: 65/100. Review the findings below before use. This is an automated assessment and may contain errors.

Install (safety-checked)

global-agent Has Warnings

Warnings detected due to potential concerns

warning
CVEs

0

Threats

0

Install Scripts

0

Risk Indicators

  • Can spawn child processes

brin Recommendations

  • This package has warnings detected. Evaluate the specific concerns before proceeding.

Install with brin add global-agent to automatically apply these checks before installation.

This is an automated, point-in-time assessment and may contain errors. Findings are risk indicators, not confirmed threats. Security posture may change over time. Maintainers can dispute findings via the brin review process.

global-agent Capabilities & Permissions

What global-agent can access when installed. Review these capabilities before using with AI agents like Cursor, Claude Code, or Codex.

Network Access

This package makes network requests.

0.0.0.0127.0.0.1bar.foo.comexample.orgfoo.comfoo@127.0.0.1gist.github.comgithub.comnodejs.org
Protocols: http, https, tcp

Process Spawning

This package can spawn child processes.

Environment Variables

Accesses the following environment variables.

GLOBAL_AGENT_FORCE_GLOBAL_AGENTNODE_TLS_REJECT_UNAUTHORIZED

AGENTS.md for global-agent

Good instructions lead to good results. brin adds global-agent documentation to your AGENTS.md so your agent knows how to use it properly—improving both safety and performance.

brin init

Vercel's research: 100% accuracy with AGENTS.md vs 53% without →

global-agent Documentation & Source Code

For the full global-agent README, API documentation, and source code, visit the official package registry.

Frequently asked questions about global-agent safety

Weekly Downloads

4.6M

Version

4.0.0

License

BSD-3-Clause

Last Scanned

Feb 4, 2026

Trust Score

65/100·Legitimacy signals, not safety

Capabilities

Network

Connects to: 0.0.0.0, 127.0.0.1, bar.foo.com...

Process

Spawns child processes

Environment

Accesses: GLOBAL_AGENT_FORCE_GLOBAL_AGENT, NODE_TLS_REJECT_UNAUTHORIZED

Is global-agent Safe? | npm Safety Scan - brin