
Research
/Security News
PolinRider Spreads Through Compromised GitHub Accounts and Packagist
Operators behind PolinRider used a compromised GitHub account to plant malware in four development versions of a Packagist package with 700,000+ downloads.
@archstone/emitter-support
Advanced tools
Shared substrate for Archstone emitters: IR indexing, semantic-type to JSON Schema lowering, and response mapping. No MCP SDK, no filesystem.
Shared, IR-only substrate for Archstone emitters (ADD-0008 / RFC-0008): IR indexing
(Registry), semantic-type → JSON-Schema lowering, tool-name sanitization, and the
response-mapping executor. Depends only on @archstone/compiler — no MCP SDK, no
node:fs, no HTTP — so any emitter built on it (the MCP server in @archstone/runtime
today, the embedded agent in @archstone/agent later) can be tree-shaken cleanly.
Part of Archstone, an open-source
Capability Platform — most users should install
@archstone/cli instead of depending on
this package directly.
Apache-2.0
FAQs
Shared substrate for Archstone emitters: IR indexing, semantic-type to JSON Schema lowering, and response mapping. No MCP SDK, no filesystem.
The npm package @archstone/emitter-support receives a total of 787 weekly downloads. As such, @archstone/emitter-support popularity was classified as not popular.
We found that @archstone/emitter-support demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Research
/Security News
Operators behind PolinRider used a compromised GitHub account to plant malware in four development versions of a Packagist package with 700,000+ downloads.

Security News
GitHub Actions now supports cache-mode, a least-privilege control on the Actions cache aimed at the cache poisoning technique behind recent compromises.

Company News
Allow myself to introduce... myself.