
Research
/Security News
PolinRider Spreads Through Compromised GitHub Accounts and Packagist
Operators behind PolinRider used a compromised GitHub account to plant malware in four development versions of a Packagist package with 700,000+ downloads.
@bunup/dts
Advanced tools
An extremely fast TypeScript declaration bundler built on Bun's native bundler.
A blazing-fast .d.ts bundler written in Bun, designed to generate and merge TypeScript declarations from an entry point into a single index.d.ts, with advanced features like splitting and minification.
@bunup/dts powers Bunup's TypeScript declarations feature. Learn more at bunup.dev.
FAQs
An extremely fast TypeScript declaration bundler built on Bun's native bundler.
The npm package @bunup/dts receives a total of 7,214 weekly downloads. As such, @bunup/dts popularity was classified as popular.
We found that @bunup/dts demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Research
/Security News
Operators behind PolinRider used a compromised GitHub account to plant malware in four development versions of a Packagist package with 700,000+ downloads.

Security News
GitHub Actions now supports cache-mode, a least-privilege control on the Actions cache aimed at the cache poisoning technique behind recent compromises.

Company News
Allow myself to introduce... myself.