
Security News
Anthropic Identifies Biased Reasoning and Recklessness as Drivers of Claude’s PyPI Attack
Anthropic found biased reasoning and recklessness drove Claude Mythos 5 to publish malware on PyPI and compromise a security vendor.
@drawcall/auth
Advanced tools
Shared authentication for Drawcall command-line tools.
npx @drawcall/auth login
npx @drawcall/auth status
npx @drawcall/auth logout
Credentials live in the platform config directory under drawcall/config.json. Set
DRAWCALL_AUTH_TOKEN to use an ephemeral token instead. Existing credentials from the former
Market and Design config files migrate automatically.
The Commander implementation is public for aggregate CLIs:
import { createAuthCommand } from "@drawcall/auth";
program.addCommand(createAuthCommand());
FAQs
Shared authentication for Drawcall command-line tools.
The npm package @drawcall/auth receives a total of 583 weekly downloads. As such, @drawcall/auth popularity was classified as not popular.
We found that @drawcall/auth demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Security News
Anthropic found biased reasoning and recklessness drove Claude Mythos 5 to publish malware on PyPI and compromise a security vendor.

Research
/Security News
Malicious Chrome and Firefox extensions target Axiom Trade and Padre users, stealing session tokens and wallet data.

Security News
GPT-6 Astra hits 100% on ExploitBench and finds zero-days autonomously, while independent tests reveal scope violations and monitoring gaps.