
Research
/Security News
OpenAPI React Query Codegen Compromised in Mini Shai-Hulud npm Supply Chain Attack
Ten malicious OpenAPI React Query Codegen versions were published to npm in the Mini Shai-Hulud attack, all with valid provenance.
@archstone/emitter-support
Advanced tools
Shared substrate for Archstone emitters: IR indexing, semantic-type to JSON Schema lowering, and response mapping. No MCP SDK, no filesystem.
Shared, IR-only substrate for Archstone emitters (ADD-0008 / RFC-0008): IR indexing
(Registry), semantic-type → JSON-Schema lowering, tool-name sanitization, and the
response-mapping executor. Depends only on @archstone/compiler — no MCP SDK, no
node:fs, no HTTP — so any emitter built on it (the MCP server in @archstone/runtime
today, the embedded agent in @archstone/agent later) can be tree-shaken cleanly.
Part of Archstone, an open-source
Capability Platform — most users should install
@archstone/cli instead of depending on
this package directly.
Apache-2.0
FAQs
Shared substrate for Archstone emitters: IR indexing, semantic-type to JSON Schema lowering, and response mapping. No MCP SDK, no filesystem.
The npm package @archstone/emitter-support receives a total of 1,787 weekly downloads. As such, @archstone/emitter-support popularity was classified as popular.
We found that @archstone/emitter-support demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Research
/Security News
Ten malicious OpenAPI React Query Codegen versions were published to npm in the Mini Shai-Hulud attack, all with valid provenance.

Security News
Socket joins more than 100 technology, cybersecurity, and financial organizations calling for a global surge in cyber defense.

Product
Enterprise security teams can now detect malware, credential theft, suspicious network activity, and risky updates across Microsoft Edge extensions.