This is a plausible Claude Code proxy, but it ships with a hardcoded third-party endpoint and API key, logs prompt content, and can persistently redirect future Claude Code traffic.
Review carefully before installing or running. Do not use it as-is with sensitive repositories or prompts. Remove the embedded API key, configure a trusted upstream endpoint explicitly, supply your own key through a safer secret mechanism, disable request-body logging, restrict local access/CORS where possible, and stop or revert the proxy configuration when finished. VirusTotal was pending and was not used as the basis for this verdict.