The agent is doing the actual work, and VS Code is just a window.
Perplexity launches Bumblebee: How its new read-only dev scanner differs from Chainguard ...
Update May 21: GitHub has now linked this breach to the TanStack npm supply-chain attack and says the employee installed a malicious version of the Nx Console extension. GitHub has confirmed that ...