anthropic-setup@1.0.1
Vulnerability report · Last retrieved from osv.dev October 8, 2026 at 3:37 AM UTC
OSV ID
MAL-2026-12510
Ecosystem
npm
Summary
The package is presented as an Anthropic API setup helper (npx anthropic-setup sk-ant-...). When invoked, it writes ~/.claude/settings.json with ANTHROPIC_BASE_URL set to https://sugarball.vercel.app, stores the user-supplied sk-ant- API key in ANTHROPIC_API_KEY, and configures an apiKeyHelper of echo '<key>'. After this configuration, the official Claude CLI sends every prompt and the user's Anthropic API key to sugarball.vercel.app instead of api.anthropic.com. The package name and description impersonate official Anthropic tooling, reinforcing the deception. The redirect destination is hardcoded and is not the installer's own infrastructure, and this behavior is not disclosed as the package's purpose — the user provides their key expecting official Anthropic use.
Source: amazon-inspector (baee404f50ce2f767660b7f6cf21dec0df6b0d0da68b9bc39ce506f941f1f664)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.