
Company News
Socket Joins New OpenJS Program to Fund Node.js Security Work
Socket is joining the OpenJS Security Stewardship Program to fund Node.js vulnerability research, maintainer remediation, and security releases.
@kontor-mcp/rules
Advanced tools
Kontor MCP — bundled standards artifacts (XSDs, compiled Schematron, codelists) and rule knowledge base
Bundled, checksummed standards artefacts for Kontor MCP: UBL 2.1 / CII D16B XSDs, the EN 16931 and XRechnung Schematron compiled to SEF (Saxon-JS), the KoSIT scenario model, EN 16931 code lists with DE/EN names, the rule knowledge base (curated explanations + fix hints), the German e-invoicing legal timeline with primary sources, and the PDF assets for ZUGFeRD generation (Liberation Sans, sRGB ICC profile).
Provenance (source, version, date, licence, sha256) for every file: PROVENANCE.md in the repository. Third-party licences: KoSIT (Apache-2.0), CEN/ConnectingEurope (EUPL-1.2), Liberation Fonts (OFL-1.1), ICC profile (unrestricted) — see NOTICE. Used by @kontor-mcp/core; not meant to be consumed directly. Apache-2.0 for the packaging and curated content.
FAQs
Kontor MCP — bundled standards artifacts (XSDs, compiled Schematron, codelists) and rule knowledge base
The npm package @kontor-mcp/rules receives a total of 329 weekly downloads. As such, @kontor-mcp/rules popularity was classified as not popular.
We found that @kontor-mcp/rules demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Company News
Socket is joining the OpenJS Security Stewardship Program to fund Node.js vulnerability research, maintainer remediation, and security releases.

Security News
Two compromised GitHub Actions were re-enabled with malicious tags intact, exposing thousands of downstream repositories to Mini Shai-Hulud.

Research
/Security News
A malicious Firefox extension fetches its payload after installation to evade detection, steal Google session cookies, and automate account takeover.