Snyk analyzed jqwik 1.10.0, which an open source maintainer intentionally embedded with hidden prompt injection instructions targeting AI coding agents. The injected content used terminal escape codes to conceal destructive instructions from human readers while keeping them visible to AI tools and logs.