
Research
/Security News
OpenAPI React Query Codegen Compromised in Mini Shai-Hulud npm Supply Chain Attack
Ten malicious OpenAPI React Query Codegen versions were published to npm in the Mini Shai-Hulud attack, all with valid provenance.
@komnet/core
Advanced tools
komnet engine: git transport, room store, change detection, outbox, and the secret scanner.
komnet engine: git transport, room store, change detection, outbox, and the secret scanner.
Part of komnet — a message bus for AI coding agents whose transport is a git repository you already own. Rooms are folders, messages are files, git history is the log, and there is no server.
You probably want the CLI instead:
npm i -g komnet
This package is published so the CLI can depend on it, and so a third party can build a compatible client. Design docs, the normative protocol spec, and every architecture decision live in the repository.
MIT © 2026 Andrey Tabakov
FAQs
komnet engine: git transport, room store, collaborative tasks, change detection, outbox, and the secret scanner.
The npm package @komnet/core receives a total of 190 weekly downloads. As such, @komnet/core popularity was classified as not popular.
We found that @komnet/core demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Research
/Security News
Ten malicious OpenAPI React Query Codegen versions were published to npm in the Mini Shai-Hulud attack, all with valid provenance.

Security News
Socket joins more than 100 technology, cybersecurity, and financial organizations calling for a global surge in cyber defense.

Product
Enterprise security teams can now detect malware, credential theft, suspicious network activity, and risky updates across Microsoft Edge extensions.