
Security News
GitHub Actions Adds cache-mode to Limit Cache Poisoning Risk
GitHub Actions now supports cache-mode, a least-privilege control on the Actions cache aimed at the cache poisoning technique behind recent compromises.
@mosadd/providers
Advanced tools
Provider contracts for mosadd: transport-agnostic interfaces for voice (mTALK PTT floor) and DM delivery. Interfaces only today — vendor adapters land per-provider.
Provider contracts — the transport-agnostic interfaces the m* modules
plug their backends into. What ships in this package today:
VoiceProvider (src/voice.ts) — the half-duplex mTALK floor-control
contract (who holds the walkie-talkie floor, join tickets, PTT
press/release). The default network implementation (LiveKit-service media +
an authoritative floor table) lives in @mosadd/mcp; a hardware
host can inject a radio-backed implementation instead.DmProvider (src/dm.ts) — the DM delivery contract.Honest status: interfaces only. There are no vendor adapter
implementations in this package yet — the mosADD backend today is the Supabase
project that @mosadd/mcp talks to (hosted, or your own via BYOK
env). Additional pluggable backends are roadmap items, described only when
they ship — see docs/roadmap.md.
FAQs
Provider contracts for mosadd: transport-agnostic interfaces for voice (mTALK PTT floor) and DM delivery. Interfaces only today — vendor adapters land per-provider.
The npm package @mosadd/providers receives a total of 23 weekly downloads. As such, @mosadd/providers popularity was classified as not popular.
We found that @mosadd/providers demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Security News
GitHub Actions now supports cache-mode, a least-privilege control on the Actions cache aimed at the cache poisoning technique behind recent compromises.

Company News
Allow myself to introduce... myself.

Research
/Security News
A Twitch browser extension on Chrome and Firefox forwards users’ live OAuth session tokens through proxies controlled by a Russian bot service.