
Research
/Security News
77 Firefox Extensions Linked to Crypto Wallet and Credential Theft
Socket uncovered 77 linked Firefox extensions, including 40 that steal wallet secrets or credentials and 37 deceptive sports-score shells.
@decantr/registry
Advanced tools
Legacy compatibility package for Decantr content contracts, schemas, and API client utilities
Support status: supported-secondary
Release channel: stable
Legacy Decantr 3.x compatibility package for content contracts, schemas, API client naming, ranking helpers, and resolver utilities.
Prefer @decantr/content for new official corpus integrations. Keep @decantr/registry when existing scripts or MCP/directory-compatible code still use registry naming.
npm install @decantr/registry
ContentHealthReport types for vocabulary supply-chain health artifactsRegistryAPIClient for server-side and tool-side content API access@decantr/registry/client for web-safe API usagepatternToDiscoveryCandidate(), scorePatternCandidate(), and rankPatternCandidates()All, Featured, Certified, and Labs corpus cutscreateCorpusResolver(), searchCorpusContent(), listCorpusRecords(), and related helpers re-exported from @decantr/contentNode/runtime usage:
import { RegistryAPIClient } from '@decantr/registry';
const client = new RegistryAPIClient({ baseUrl: 'https://api.decantr.ai/v1' });
const results = await client.search({
q: 'dashboard',
type: 'blueprint',
blueprintSet: 'featured',
});
Browser-safe usage:
import { createRegistryClient } from '@decantr/registry/client';
const client = createRegistryClient({ baseUrl: 'https://api.decantr.ai/v1' });
const summary = await client.getIntelligenceSummary();
Pattern discovery usage:
import { patternToDiscoveryCandidate, rankPatternCandidates } from '@decantr/registry';
const matches = rankPatternCandidates(
{ query: 'recipe feed with avatars and infinite scroll', route: '/feed' },
patterns.map((pattern) => patternToDiscoveryCandidate(pattern)),
);
This package keeps the legacy canonical schema paths under @decantr/registry/schema/*, including content-health-report.v1.json for local content reports emitted by decantr content-health. New corpus integrations should prefer @decantr/content/schemas/*.
Blueprint records can include blueprint_portfolio metadata. List/search summaries expose that metadata so clients can show public-facing blueprint sets without leaking internal maturity labels:
all — supported official blueprints, excluding Labs and folded slugs by defaultfeatured — curated default discovery pickscertified — blueprints with certified artifact metadatalabs — opt-in experimental directions@decantr/registry is maintained as a Decantr 3 compatibility package.
@decantr/registry provides legacy schema paths, content utilities, and API clients. It may read explicit local content JSON files when resolver helpers are used, and it may call the configured Decantr API base URL when client methods are invoked. It does not write files, spawn processes, emit telemetry, or upload source by itself. See security permissions.
MIT
FAQs
Legacy compatibility package for Decantr content contracts, schemas, and API client utilities
The npm package @decantr/registry receives a total of 27 weekly downloads. As such, @decantr/registry popularity was classified as not popular.
We found that @decantr/registry demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Research
/Security News
Socket uncovered 77 linked Firefox extensions, including 40 that steal wallet secrets or credentials and 37 deceptive sports-score shells.

Security News
NIST disclosed an unreleased AI tool called V-etalon and opened a broad inquiry into NVD modernization after years of automation plans produced no public enrichment system.

Security News
In his AI Council 2026 talk, Feross Aboukhadijeh covers recent package compromises, vulnerability discovery, and a more automated security model.