
Research
/Security News
OpenAPI React Query Codegen Compromised in Mini Shai-Hulud npm Supply Chain Attack
Ten malicious OpenAPI React Query Codegen versions were published to npm in the Mini Shai-Hulud attack, all with valid provenance.
@mesadev/rest
Advanced tools
Affected versions:
TypeScript REST SDK for the Mesa API.
This package is generated from the OpenAPI schema and mirrored to the public mesa-dot-dev/ts-rest repository.
bun add @mesadev/rest
From the monorepo root:
pnpm run sdk:generate:typescript
This refreshes the package's generated dist/ output for local development. It does not write generated source files into the repo.
FAQs
TypeScript REST SDK for the Mesa API
The npm package @mesadev/rest receives a total of 13,006 weekly downloads. As such, @mesadev/rest popularity was classified as popular.
We found that @mesadev/rest demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 4 open source maintainers collaborating on the project.

Research
/Security News
Ten malicious OpenAPI React Query Codegen versions were published to npm in the Mini Shai-Hulud attack, all with valid provenance.

Security News
Socket joins more than 100 technology, cybersecurity, and financial organizations calling for a global surge in cyber defense.

Product
Enterprise security teams can now detect malware, credential theft, suspicious network activity, and risky updates across Microsoft Edge extensions.