
Security News
Insecure Agents Podcast: How to Keep AI Agents From Bypassing Security Controls
Socket CTO Ahmad Nassri discusses how to keep AI agents from bypassing package blocks, limit credential access, and monitor their actions.
@jawcode-dev/natives
Advanced tools
Native Rust bindings for grep, clipboard, image processing, syntax highlighting, PTY, and shell operations via N-API
Native Rust functionality via N-API.
globPaths)General-purpose image processing (decode/resize/encode for files and buffers)
lives in Bun.Image on the JS side; this
crate only ships the SIXEL encoder because no built-in equivalent exists for
that terminal protocol.
import { grep, find, encodeSixel } from "@jawcode-dev/natives";
// Grep for a pattern
const results = await grep({
pattern: "TODO",
path: "/path/to/project",
glob: "*.ts",
context: 2,
});
// Find files
const files = await find({
pattern: "*.rs",
path: "/path/to/project",
fileType: "file",
});
// SIXEL encode for a terminal cell box (px)
const sequence = encodeSixel(pngBytes, widthPx, heightPx);
# Build native addon from workspace root (requires Rust)
bun run build
# Type check
bun run check
crates/pi-natives/ # Rust source (workspace member)
src/lib.rs # N-API exports
src/sixel.rs # SIXEL terminal-image encoding
Cargo.toml # Rust dependencies
native/ # Native addon binaries
pi_natives.<platform>-<arch>-modern.node # x64 modern ISA (AVX2)
pi_natives.<platform>-<arch>-baseline.node # x64 baseline ISA
pi_natives.<platform>-<arch>.node # non-x64 build artifact
src/ # TypeScript wrappers
native.ts # Native addon loader
index.ts # Public API
FAQs
Native Rust bindings for grep, clipboard, image processing, syntax highlighting, PTY, and shell operations via N-API
We found that @jawcode-dev/natives demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Security News
Socket CTO Ahmad Nassri discusses how to keep AI agents from bypassing package blocks, limit credential access, and monitor their actions.

Security News
GPT-6 Astra tried to plant malicious code in simulated open source projects using fake GitHub accounts and deceptive PRs during an assigned CTF challenge.

Security News
upm uses Node.js to deliver fast npm installs in about 250 KB, with a JavaScript API and security defaults.