
Company News
Socket Joins New OpenJS Program to Fund Node.js Security Work
Socket is joining the OpenJS Security Stewardship Program to fund Node.js vulnerability research, maintainer remediation, and security releases.
@elisym/husk
Advanced tools
HUSK CLI - serve a folder of agent skills over HTTP with one Bun process. Scaffold, list, call, and containerize skills.
The husk CLI - HUSK, the HTTP Universal
Skill Kernel. Turn a folder of agent skills into a working HTTP backend with one
long-lived Bun process. No SDK, no rewrite: write a script in
any language, and HUSK publishes it.
bun add -g @elisym/husk
husk init # create ./skills with a starter skill
husk serve # serve every skill over HTTP on :3000
curl -X POST localhost:3000/skills/hello --data 'world'
| Command | Description |
|---|---|
husk serve [dir] | Serve a folder of skills over HTTP. --watch hot-reloads, --port, --host, --concurrency, --cors, --name. |
husk list [dir] | List discovered skills (--json for machine output). |
husk call <name> | Invoke a skill locally without HTTP. -i/--input (- = stdin, @file = file), -f/--file, -o/--out, -d/--dir. |
husk new <name> | Scaffold a skill. -l/--lang bash|python|ts, -d/--dir. |
husk init [dir] | Create a project with a ./skills folder and a starter skill. |
husk build [dir] --docker | Emit a Dockerfile so the same skills run in a container. |
# skills/uppercase/SKILL.md
---
name: Uppercase
description: Send any text, get it back in upper case.
run: ./upper.sh
---
# skills/uppercase/upper.sh
#!/bin/sh
exec tr 'a-z' 'A-Z'
That is the whole skill. See the HUSK guide for the manifest reference, the kernel I/O contract, and deployment patterns.
Requires Bun (the server uses Bun.serve). The engine itself lives in
@elisym/husk-core.
MIT licensed, by elisym labs.
FAQs
HUSK CLI - serve a folder of agent skills over HTTP with one Bun process. Scaffold, list, call, and containerize skills.
We found that @elisym/husk demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Company News
Socket is joining the OpenJS Security Stewardship Program to fund Node.js vulnerability research, maintainer remediation, and security releases.

Security News
Two compromised GitHub Actions were re-enabled with malicious tags intact, exposing thousands of downstream repositories to Mini Shai-Hulud.

Research
/Security News
A malicious Firefox extension fetches its payload after installation to evade detection, steal Google session cookies, and automate account takeover.