
Research
/Security News
Malicious Chrome and Firefox Extensions Steal Crypto Traders’ Session and Wallet Data
Malicious Chrome and Firefox extensions target Axiom Trade and Padre users, stealing session tokens and wallet data.
@memberjunction/ai-agent-harness
Advanced tools
OIDC trusted publishing setup package for @memberjunction/ai-agent-harness
This package is created solely for the purpose of setting up OIDC (OpenID Connect) trusted publishing with npm.
This is NOT a functional package and contains NO code or functionality beyond the OIDC setup configuration.
This package exists to:
@memberjunction/ai-agent-harnessOIDC trusted publishing allows package maintainers to publish packages directly from their CI/CD workflows without needing to manage npm access tokens. Instead, it uses OpenID Connect to establish trust between the CI/CD provider (like GitHub Actions) and npm.
To properly configure OIDC trusted publishing for this package:
This package is a placeholder for OIDC configuration only. It:
For more details about npm's trusted publishing feature, see:
Maintained for OIDC setup purposes only
FAQs
OIDC trusted publishing setup package for @memberjunction/ai-agent-harness
We found that @memberjunction/ai-agent-harness demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 11 open source maintainers collaborating on the project.

Research
/Security News
Malicious Chrome and Firefox extensions target Axiom Trade and Padre users, stealing session tokens and wallet data.

Security News
GPT-6 Astra hits 100% on ExploitBench and finds zero-days autonomously, while independent tests reveal scope violations and monitoring gaps.

Product
Socket can now send alerts and supply chain attack notifications to Microsoft Teams, with filters that route the right updates to each channel.