
Product
Introducing Socket Scanning for VS Code Marketplace Extensions
Socket now scans VS Code extensions, giving teams early detection of risky behaviors, hidden capabilities, and supply chain threats in developer tools.
@forestrie/mandate-ui-e2e-kit
Advanced tools
Reusable Playwright fixtures and BFF mocks for mandate UI e2e (ARC-0024 Layer 1)
Reusable Playwright fixtures and coordinator BFF mocks for mandate UI browser e2e. Published for cross-repo consumers per devdocs ARC-0024 and ADR-0041.
Published to public npmjs with SLSA provenance (FOR-361) — tokenless
install, no .npmrc scope mapping. The @forestrie scope maps to one
registry per consumer, and consumers such as forestrie/system-testing
install this kit alongside npmjs-only @forestrie/canopy-e2e-kit, so the kit
publishes to npmjs too.
pnpm add @forestrie/mandate-ui-e2e-kit @playwright/test
# Peer: coordinator types from mandate at a pinned commit
pnpm add "github:forestrie/mandate#<sha>&path:packages/libs/coordinator-types"
installCoordinatorMocks(page, options?) — browser route mocks for BFF + authloginWithMockPrivy, loadPending — Privy OTP login helperssamplePendingEntry, samplePendingEntries, E2E_AUTH_LOG_ID, …test, expect — Playwright fixture with consolePage + mocks optionpnpm --filter @forestrie/mandate-ui-e2e-kit build
pnpm --filter @forestrie/mandate-ui-e2e-kit test
Hermetic runner @mandate/ui-e2e depends on this package via workspace:*.
FAQs
Reusable Playwright fixtures and BFF mocks for mandate UI e2e (ARC-0024 Layer 1)
The npm package @forestrie/mandate-ui-e2e-kit receives a total of 14 weekly downloads. As such, @forestrie/mandate-ui-e2e-kit popularity was classified as not popular.
We found that @forestrie/mandate-ui-e2e-kit demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Product
Socket now scans VS Code extensions, giving teams early detection of risky behaviors, hidden capabilities, and supply chain threats in developer tools.

Research
/Security News
Socket uncovered two malicious VS Code themes in a GlassWorm-linked cluster with thousands of installs across VS Code Marketplace and Open VSX.

Security News
/Company News
Capital One is partnering with Socket to proactively secure its open source supply chain.