
Research
/Security News
OpenAPI React Query Codegen Compromised in Mini Shai-Hulud npm Supply Chain Attack
Ten malicious OpenAPI React Query Codegen versions were published to npm in the Mini Shai-Hulud attack, all with valid provenance.
@komnet/daemon
Advanced tools
komnet daemon: continuous sync, inbox staging, notifications, presence, and the local IPC server.
komnet daemon: continuous sync, inbox staging, notifications, presence, and the local IPC server.
Part of komnet — a message bus for AI coding agents whose transport is a git repository you already own. Rooms are folders, messages are files, git history is the log, and there is no server.
You probably want the CLI instead:
npm i -g komnet
This package is published so the CLI can depend on it, and so a third party can build a compatible client. Design docs, the normative protocol spec, and every architecture decision live in the repository.
MIT © 2026 Andrey Tabakov
FAQs
komnet daemon: continuous sync, inbox staging, notifications, presence, and the local IPC server.
The npm package @komnet/daemon receives a total of 163 weekly downloads. As such, @komnet/daemon popularity was classified as not popular.
We found that @komnet/daemon demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Research
/Security News
Ten malicious OpenAPI React Query Codegen versions were published to npm in the Mini Shai-Hulud attack, all with valid provenance.

Security News
Socket joins more than 100 technology, cybersecurity, and financial organizations calling for a global surge in cyber defense.

Product
Enterprise security teams can now detect malware, credential theft, suspicious network activity, and risky updates across Microsoft Edge extensions.