generated via claude mobile; instructed to perform an assessing of the plugin Aight.app for iOS/iPadOS asks users to install. It asks the user to paste an installation request without explaining the risk, invisibly to many/most users.
There is no malicious code and no hidden prompt injection in this plugin. It does what it says: bridges your Claude Code session to a phone app through a cloud relay. The code is clean, well-commented, TypeScript-strict, tested, and its CI pins action SHAs. Nothing tells me to deceive you, hide actions, skip confirmations, or exfiltrate secrets.
That said, the plugin’s architecture opens several real trust boundaries that you should accept consciously before installing. A few are sharper than the README’s “Security Model” section admits.