
Research
/Security News
PolinRider Spreads Through Compromised GitHub Accounts and Packagist
Operators behind PolinRider used a compromised GitHub account to plant malware in four development versions of a Packagist package with 700,000+ downloads.
@marcusrbrown/infra
Advanced tools
Infrastructure management CLI — deploy automation, health checks, and MCP bridge
Infrastructure management CLI — deploy automation, health checks, and MCP bridge.
Requires Bun — this package ships TypeScript source with a
#!/usr/bin/env bunshebang.
bun add -g @marcusrbrown/infra
Or run directly:
bunx @marcusrbrown/infra --help
Manage the KeeWeb static-site deployment on box.heatvision.co.
| Subcommand | Description |
|---|---|
keeweb status | HTTP reachability, last deploy timestamp, SHA-256 content hash vs local dist/ |
keeweb deploy | Trigger deployment (GitHub Actions by default; --local for direct SSH) |
keeweb open | Open the KeeWeb site in the default browser |
bunx @marcusrbrown/infra keeweb status
bunx @marcusrbrown/infra keeweb deploy # GitHub Actions workflow
bunx @marcusrbrown/infra keeweb deploy --local # deploy directly via SSH
bunx @marcusrbrown/infra keeweb deploy --local --nginx # include nginx config
bunx @marcusrbrown/infra keeweb open
Manage the CLIProxyAPI proxy on cliproxy.fro.bot.
| Subcommand | Description |
|---|---|
cliproxy status | HTTP reachability, usage stats, version |
cliproxy models | List models served at /v1/models; optional [provider] filter |
cliproxy deploy | Trigger deployment (GitHub Actions by default; --local for direct SSH) |
cliproxy config | Get or set proxy configuration via the management API |
cliproxy keys | List, add, or remove API keys via the management API |
cliproxy login | Authenticate a provider (claude or codex) via SSH |
cliproxy monitor | Probe Anthropic auth and send issue/Discord transition alerts |
cliproxy open | Open an interactive TUI via SSH |
cliproxy setup | Interactive wizard to onboard a repo to CLIProxyAPI |
bunx @marcusrbrown/infra cliproxy status
bunx @marcusrbrown/infra cliproxy models
bunx @marcusrbrown/infra cliproxy models anthropic
bunx @marcusrbrown/infra cliproxy deploy
bunx @marcusrbrown/infra cliproxy config get
bunx @marcusrbrown/infra cliproxy config set
bunx @marcusrbrown/infra cliproxy keys list
bunx @marcusrbrown/infra cliproxy keys add
bunx @marcusrbrown/infra cliproxy keys remove
bunx @marcusrbrown/infra cliproxy login claude
bunx @marcusrbrown/infra cliproxy login codex
bunx @marcusrbrown/infra cliproxy monitor
bunx @marcusrbrown/infra cliproxy open
bunx @marcusrbrown/infra cliproxy setup
bunx @marcusrbrown/infra cliproxy setup --repo OWNER/REPO --harness opencode
Manage the Fro Bot gateway on gateway.fro.bot.
| Subcommand | Description |
|---|---|
gateway status | SSH health check, docker compose ps service states |
gateway deploy | Trigger deployment (GitHub Actions by default; --local for direct SSH) |
gateway logs | Stream gateway service logs (--tail N to limit lines) |
gateway backup | Pull mitmproxy CA cert + key as a tarball (--include-ca) |
gateway restore | Restore CA from a tarball (--include-ca --input FILE) |
bunx @marcusrbrown/infra gateway status
bunx @marcusrbrown/infra gateway deploy
bunx @marcusrbrown/infra gateway logs gateway --tail 100
bunx @marcusrbrown/infra gateway backup --include-ca
bunx @marcusrbrown/infra gateway restore --include-ca --input backup.tar.gz
Manage the Umami analytics deployment on metrics.fro.bot.
| Subcommand | Description |
|---|---|
umami status | SSH health check, docker compose ps service states |
umami deploy | Trigger deployment (GitHub Actions by default; --local for direct SSH) |
umami logs | Stream umami service logs (--tail N to limit lines) |
bunx @marcusrbrown/infra umami status
bunx @marcusrbrown/infra umami deploy
bunx @marcusrbrown/infra umami logs --tail 50
bunx @marcusrbrown/infra status # all deployments
bunx @marcusrbrown/infra status --json # machine-readable output
Exposes read-only status commands as MCP tools over stdio.
bunx @marcusrbrown/infra mcp
See packages/cli/AGENTS.md for the MCP allowlist and tool-exposure rules.
MIT
FAQs
Infrastructure management CLI — deploy automation, health checks, and MCP bridge
The npm package @marcusrbrown/infra receives a total of 356 weekly downloads. As such, @marcusrbrown/infra popularity was classified as not popular.
We found that @marcusrbrown/infra demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Research
/Security News
Operators behind PolinRider used a compromised GitHub account to plant malware in four development versions of a Packagist package with 700,000+ downloads.

Security News
GitHub Actions now supports cache-mode, a least-privilege control on the Actions cache aimed at the cache poisoning technique behind recent compromises.

Company News
Allow myself to introduce... myself.