
Research
/Security News
OpenAPI React Query Codegen Compromised in Mini Shai-Hulud npm Supply Chain Attack
Ten malicious OpenAPI React Query Codegen versions were published to npm in the Mini Shai-Hulud attack, all with valid provenance.
@mcoda/core
Advanced tools
Core services that power the mcoda CLI (docs, planning, jobs, telemetry, openapi).
npm i @mcoda/core~/.mcoda/workspaces/<fingerprint>.import { WorkspaceResolver, JobService } from "@mcoda/core";
const workspace = await WorkspaceResolver.resolveWorkspace({ cwd: process.cwd() });
const jobs = new JobService(workspace);
// Use jobs to record command runs, token usage, and job state.
~/.mcoda/workspaces/<fingerprint>.MIT - see LICENSE.
FAQs
Core services and APIs for the mcoda CLI.
We found that @mcoda/core demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Research
/Security News
Ten malicious OpenAPI React Query Codegen versions were published to npm in the Mini Shai-Hulud attack, all with valid provenance.

Security News
Socket joins more than 100 technology, cybersecurity, and financial organizations calling for a global surge in cyber defense.

Product
Enterprise security teams can now detect malware, credential theft, suspicious network activity, and risky updates across Microsoft Edge extensions.