
Research
/Security News
PolinRider Spreads Through Compromised GitHub Accounts and Packagist
Operators behind PolinRider used a compromised GitHub account to plant malware in four development versions of a Packagist package with 700,000+ downloads.
Command Line Argument Parser for Rust
Dual-licensed under Apache 2.0 or MIT.
$ cargo add clap
Create your command-line parser, with all of the bells and whistles, declaratively or procedurally.
For more details, see:
FAQs
Unknown package
The cargo package clap receives a total of 18,681,394 weekly downloads. As such, clap popularity was classified as popular.
We found that clap demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Research
/Security News
Operators behind PolinRider used a compromised GitHub account to plant malware in four development versions of a Packagist package with 700,000+ downloads.

Security News
GitHub Actions now supports cache-mode, a least-privilege control on the Actions cache aimed at the cache poisoning technique behind recent compromises.

Company News
Allow myself to introduce... myself.