
Security News
OWASP 2025 Top 10 Adds Software Supply Chain Failures, Ranked Top Community Concern
OWASP’s 2025 Top 10 introduces Software Supply Chain Failures as a new category, reflecting rising concern over dependency and build system risks.
@blockware/local-cluster-service
Advanced tools
Manages configuration, ports and service discovery for locally running blockware systems
This service is a multi-functional service for simulating a "real" cluster - specifically during local development.
Provides configuration management for local services to simplify configuring local instances and also auto-generates configuration as part of its service discovery and routing capabilities.
Also provides simple service-discovery through its control over configuration - by simply controlling where services find other services. This is also how it injects itself as a MITM proxy for all local traffic and how we intend to achieve "local -> remote" and "remote -> local" tunneling in the future.
The service also provides a local proxy server that enables fine-grained routing and traffic-inspection. The only protocol currently supported is HTTP and REST-JSON but the intention is to add support for several others such as MySQL, PostgreSQL, MongoDB, Redis and more.
The local cluster service should also support metrics reporting from the local instances to make testing and checking metrics for your local environment straight-forward.
It's able to connect to a remote cluster and override certain endpoints conditionally in that cluster to make them point to itself.
This is to allow these scenarios:
FAQs
Manages configuration, ports and service discovery for locally running blockware systems
We found that @blockware/local-cluster-service demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
OWASP’s 2025 Top 10 introduces Software Supply Chain Failures as a new category, reflecting rising concern over dependency and build system risks.

Research
/Security News
Socket researchers discovered nine malicious NuGet packages that use time-delayed payloads to crash applications and corrupt industrial control systems.

Security News
Socket CTO Ahmad Nassri discusses why supply chain attacks now target developer machines and what AI means for the future of enterprise security.