
Research
/Security News
OpenAPI React Query Codegen Compromised in Mini Shai-Hulud npm Supply Chain Attack
Ten malicious OpenAPI React Query Codegen versions were published to npm in the Mini Shai-Hulud attack, all with valid provenance.
@fettle/cli
Advanced tools
Command-line interface for Fettle — grade the maintenance health of GitHub repositories.
export GITHUB_TOKEN=...
npx @fettle/cli --repos vitest-dev/vitest --format markdown
fettle --repos acme/api,acme/web --format json > report.json
fettle --repos acme/api --fail-below C # exit 1 if it grades below C
fettle --repos acme/api --api-url https://ghe.acme.com/api/v3
Exit codes: 0 success, 1 graded below --fail-below, 2 invalid usage, 3 a
repository or its configuration could not be read.
Run fettle --help for all flags. Full documentation:
github.com/rumankazi/fettle.
FAQs
Command-line interface for grading repository maintenance health.
The npm package @fettle/cli receives a total of 237 weekly downloads. As such, @fettle/cli popularity was classified as not popular.
We found that @fettle/cli demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Research
/Security News
Ten malicious OpenAPI React Query Codegen versions were published to npm in the Mini Shai-Hulud attack, all with valid provenance.

Security News
Socket joins more than 100 technology, cybersecurity, and financial organizations calling for a global surge in cyber defense.

Product
Enterprise security teams can now detect malware, credential theft, suspicious network activity, and risky updates across Microsoft Edge extensions.