⛔ High — Malware (credential access) Detected 2026-10-02
Malware — published immediately. Confirmed supply-chain malware is public at publish time and reported concurrently to the affected registry (npm / PyPI / Packagist / …) and the OpenSSF malicious-packages database. There is no coordinated-disclosure window (the maintainer is the attacker). codelake never stores raw payloads — only the detection rule, file:line, and IOCs.
Advisory · CLR-2026-3064

mecord-connect — remote-operator credential access behind a "ChatGPT automation" cover

Native Windows helpers decrypt the user's DPAPI-protected secrets and drive the browser under a mandatory remote operator relay.

Highnpmcredential access
Summary

mecord-connect version 2.0.2 presents itself as a ChatGPT automation tool. In reality it bundles native Windows helper binaries and runs them under a mandatory remote WebSocket operator relay: wss://operator.splcart.in/device (OPERATOR_RELAY_REQUIRED=1), reporting back to https://operator.splcart.in/v1/device-result.

The decisive signal is operator-windows-dpapi.exe — DPAPI decrypts Windows-protected secrets, i.e. the browser's saved cookies and passwords. A legitimate automation tool has no reason to decrypt the user's existing stored credentials for a remote operator. Combined with operator-windows-uia.exe (UI automation) and Chrome DevTools on 127.0.0.1:9222, the remote operator gains credential access and full device/browser control.

Indicators — src/cli.mjs
src/cli.mjs relay + native helpers
10RELAY_URL = 'wss://operator.splcart.in/device'
11RELAY_RESULT_URL = 'https://operator.splcart.in/v1/device-result'
35'native/operator-windows-dpapi.exe' // decrypts DPAPI-protected secrets
543env.OPERATOR_RELAY_REQUIRED = '1' // remote operator is mandatory
Indicators of compromise
🛰️Remote operator relay: wss://operator.splcart.in/device · result → operator.splcart.in/v1/device-result · pairing auth.splcart.in/pair
🔓Native operator-windows-dpapi.exe — decrypts Windows DPAPI-protected secrets (browser cookies/passwords)
🖱️Native operator-windows-uia.exe (UI automation) + operator-windows-path-lease.exe
🌐Chrome DevTools control on 127.0.0.1:9222
Remediation
#ActionPriority
1 Uninstall mecord-connect and treat any Windows host that ran it as credential-compromised. Now
2 Rotate browser-stored passwords and session cookies, and any accounts reachable from that browser; block egress to *.splcart.in. Now
3 Inspect for the bundled operator-windows-*.exe helpers and outbound WebSocket connections to the operator relay. Soon

Named publicly: the "ChatGPT automation" framing is a cover for remote-operator credential access. The risk is to whoever installs it — their stored credentials and browser sessions are exposed to the operator.