
Research
/Security News
OpenAPI React Query Codegen Compromised in Mini Shai-Hulud npm Supply Chain Attack
Ten malicious OpenAPI React Query Codegen versions were published to npm in the Mini Shai-Hulud attack, all with valid provenance.
@papi-ai/adapter-md
Advanced tools
PAPI markdown file storage adapter — reads and writes .papi/ project files
Markdown file adapter for PAPI. Reads and writes .papi/ project files — sprint boards, build reports, active decisions, and planning logs.
This adapter implements the PapiAdapter interface using local markdown files as the storage backend. It's the default adapter for offline/local usage and is bundled into @papi/server.
npm install @papi/adapter-md
You typically don't need to install this directly — it's bundled into @papi/server at build time. Install separately only if building custom tooling.
The adapter reads from and writes to a .papi/ directory in your project root:
PRODUCT_BRIEF.md — Project vision and roadmapSPRINT_BOARD.md — Tasks with status, priority, and build handoffsBUILD_REPORTS.md — Post-build reports with effort and discoveriesPLANNING_LOG.md — Sprint history and active decisionsREVIEWS.md — Human review recordsMIT
FAQs
PAPI markdown file storage adapter — reads and writes .papi/ project files
The npm package @papi-ai/adapter-md receives a total of 45 weekly downloads. As such, @papi-ai/adapter-md popularity was classified as not popular.
We found that @papi-ai/adapter-md demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Research
/Security News
Ten malicious OpenAPI React Query Codegen versions were published to npm in the Mini Shai-Hulud attack, all with valid provenance.

Security News
Socket joins more than 100 technology, cybersecurity, and financial organizations calling for a global surge in cyber defense.

Product
Enterprise security teams can now detect malware, credential theft, suspicious network activity, and risky updates across Microsoft Edge extensions.