A slower "reasoning" model might do more of the work for you -- and keep vibe coding from becoming a chore.
Malicious npm package posing as a WhatsApp Web API library operated for months as a functional dependency while stealing ...