
Research
/Security News
PolinRider Spreads Through Compromised GitHub Accounts and Packagist
Operators behind PolinRider used a compromised GitHub account to plant malware in four development versions of a Packagist package with 700,000+ downloads.
@apifreaks/openapi-specs
Advanced tools
OpenAPI 3.1 specifications for all APIFreaks API products. Ships 102 production specs across 21 categories as typed JSON, importable as ESM, CJS, or raw JSON.
npm install @apifreaks/openapi-specs
import {
getSpec,
getSpecsByCategory,
SPEC_SLUGS,
SPEC_CATEGORIES,
SPECS_BY_CATEGORY,
} from '@apifreaks/openapi-specs';
// Get a single spec by slug
const spec = getSpec('ip-locator');
// Get all slugs in a category
const ipSlugs = getSpecsByCategory('ip-intelligence');
// All available slugs
console.log(SPEC_SLUGS); // ['ip-locator', 'dns-lookup', ...]
// All categories
console.log(SPEC_CATEGORIES); // ['currency', 'dns', 'ip-intelligence', ...]
// All slugs grouped by category
console.log(SPECS_BY_CATEGORY);
import ipLocator from '@apifreaks/openapi-specs/specs/ip-intelligence/ip-locator.json';
const { getSpec, SPEC_SLUGS } = require('@apifreaks/openapi-specs');
| Export | Type | Description |
|---|---|---|
getSpec(slug) | (string) => OpenAPISpec | undefined | Returns the full spec object for a given slug |
getSpecsByCategory(category) | (string) => string[] | Returns all slugs in a category, or [] if unknown |
SPEC_SLUGS | string[] | All 102 spec slugs |
SPEC_CATEGORIES | string[] | All 21 category names |
SPECS | Record<string, OpenAPISpec> | Full spec objects keyed by slug |
SPECS_BY_CATEGORY | Record<string, string[]> | Slugs grouped by category |
import type { OpenAPISpec } from '@apifreaks/openapi-specs';
// OpenAPISpec has: openapi, info, servers?, paths?, components?, [key: string]
| Category | Count | Description |
|---|---|---|
commodity | 5 | Commodity prices, symbols, time series |
currency | 10 | Exchange rates, conversion, historical data |
dns | 4 | DNS lookup, reverse DNS, history |
domain | 4 | Domain search, checker, subdomain lookup |
email-validation | 2 | Email verification and bulk validation |
financial | 8 | VAT rates, IBAN/SWIFT validation |
general | 1 | Usage and credits |
geocoding | 2 | Forward and reverse geocoding |
geodb | 10 | Countries, cities, regions, flags, administrative units |
ip-intelligence | 4 | IP geolocation, threat intelligence, bulk lookup |
other | 1 | Astronomy data |
pdf | 19 | PDF manipulation, conversion, encryption |
phone-validation | 2 | Phone number validation |
scraper | 1 | Web scraping |
screenshot | 2 | Website screenshots |
ssl | 2 | SSL certificate lookup |
timezone | 2 | Timezone lookup and conversion |
user-agent | 2 | User-agent parsing |
weather | 8 | Current, forecast, historical, marine weather |
whois | 6 | WHOIS lookup, ASN, reverse WHOIS |
zip-code | 7 | Zip code lookup, distance, radius search |
# Install deps
npm install
# Generate manifest (auto-discovers specs/ and writes src/manifest.ts)
npm run generate
# Build (generate + tsup)
npm run build
# Typecheck
npm run typecheck
# Test
npm test
specs/ # OpenAPI 3.1 JSON files, organized by category
currency/
currency-converter.json
ip-intelligence/
ip-locator.json
...
src/
index.ts # Public API
manifest.ts # AUTO-GENERATED — do not edit manually
types.ts # OpenAPISpec type definition
scripts/
generate-manifest.ts # Reads specs/, writes src/manifest.ts
test/
validate.test.ts # Validates every spec is valid JSON + well-formed OpenAPI
.json file under the appropriate category in specs/npm run generate to regenerate src/manifest.tsnpm test to validatenpm run build to rebuild the packagesrc/manifest.ts is auto-generated and must not be edited by hand.
The package is built automatically before publish via prepublishOnly.
npm publish --access public
The published package includes only dist/ and specs/. Tests, scripts, and build configs are excluded.
MIT
FAQs
Public OpenAPI 3.1 specifications for all APIFreaks API products.
The npm package @apifreaks/openapi-specs receives a total of 637 weekly downloads. As such, @apifreaks/openapi-specs popularity was classified as not popular.
We found that @apifreaks/openapi-specs demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 2 open source maintainers collaborating on the project.

Research
/Security News
Operators behind PolinRider used a compromised GitHub account to plant malware in four development versions of a Packagist package with 700,000+ downloads.

Security News
GitHub Actions now supports cache-mode, a least-privilege control on the Actions cache aimed at the cache poisoning technique behind recent compromises.

Company News
Allow myself to introduce... myself.