New:Microsoft Teams Notifications Are Now Available in Socket.Learn more →
Get Started

@0disoft/universal-config-engine-core

Package Overview
Dependencies
Maintainers
1
Versions
13
Alerts
File Explorer

Advanced tools

Socket logo

Install Socket

Detect and block malicious and high-risk dependencies

Install

@0disoft/universal-config-engine-core

Core config resolution, provenance, validation, and redacted diagnostics for Universal Config Engine.

next
Source
npmnpm
Version
1.0.0-rc.4
Version published
Weekly downloads
10
-84.37%
Maintainers
1
Weekly downloads
 
Created
Source

@0disoft/universal-config-engine-core

Deterministic configuration resolution with source precedence, value-level provenance, structured validation, resource limits, and secret-safe diagnostics. This package has no runtime dependencies and does not read files, environment variables, or command-line arguments by itself.

Install

npm install @0disoft/universal-config-engine-core

Node.js >=24 and ESM are required.

Quick Start

import { runConfigPipeline } from "@0disoft/universal-config-engine-core";

const { result, report } = await runConfigPipeline({
  loaders: [
    {
      descriptor: {
        id: "defaults",
        kind: "defaults",
        priority: 0,
        displayName: "defaults"
      },
      load() {
        return { value: { service: { port: 3000 } } };
      }
    },
    {
      descriptor: {
        id: "local",
        kind: "object",
        priority: 10,
        displayName: "local"
      },
      load() {
        return { value: { service: { port: 8080 } } };
      }
    }
  ],
  context: undefined
});

console.log(result.config.service.port); // 8080
console.log(report.resolvedPaths[0]?.winningSourceId);

Use resolveConfig, runValidators, and buildDiagnosticReport separately when the application needs to own individual pipeline stages.

Contract

  • Object values deep-merge; arrays replace; explicit null overwrites.
  • Higher priority wins. Same-priority conflicts emit an issue and the later source wins.
  • Validation adapters return code, severity, and an optional normalized path.
  • Diagnostic report schema 0.2 is stable for the 1.x line.
  • Secret values must not be copied into issue messages, details, or provenance.

See the public API contract, 1.0 migration guide, and repository README.

License

MIT

Keywords

config

FAQs

Package last updated on 11 Aug 2026

Related posts