
Research
2025 Report: Destructive Malware in Open Source Packages
Destructive malware is rising across open source registries, using delays and kill switches to wipe code, break builds, and disrupt CI/CD.
@react-query-rewind/vue-query-rewind
Advanced tools
Vue Query Rewind is a library that helps developers debug applications that use React Query (ie TanStack Query) by letting them time travel through state changes directly in their chrome dev tools
Vue Query Rewind introduces a powerful DevTool extension designed to work in conjunction with React Query's built-in DevTools in order to optimize time-traveling through state changes in an application. This open-source extension is tailored to enhance the debugging experience for React Query users, allowing them to explore state changes and component relationships with ease.
React Query installed and in use in your application.
Install RQRewind Chrome Extension.
Download npm package into your application as a dev dependency.
npm i --save-dev @react-query-rewind/vue-query-rewind
Import the ReactQueryRewind component into the root of your applicaiton.
import VueQueryRewind from '@react-query-rewind/vue-query-rewind';
Use the VueQuery plugins
app.use(VueQueryPlugin, { queryClient }); // from Tanstack
app.use(VueQueryRewind);
Open the Chrome DevTool Extension and start coding!




Austin Cavanagh - GitHub - LinkedIn - austin.cavanagh.cs@gmail.com
Emma Teering - GitHub - LinkedIn - teeringe@gmail.com
John Dunn - GitHub - LinkedIn - johnwdunn20@gmail.com
Rui Fan - GitHub - LinkedIn - rfan1986@gmail.com
Project Link: React Query Rewind
Website: reactqueryrewind.com
MIT Link
FAQs
Vue Query Rewind is a library that helps developers debug applications that use React Query (ie TanStack Query) by letting them time travel through state changes directly in their chrome dev tools
We found that @react-query-rewind/vue-query-rewind demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 4 open source maintainers collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Research
Destructive malware is rising across open source registries, using delays and kill switches to wipe code, break builds, and disrupt CI/CD.

Security News
Socket CTO Ahmad Nassri shares practical AI coding techniques, tools, and team workflows, plus what still feels noisy and why shipping remains human-led.

Research
/Security News
A five-month operation turned 27 npm packages into durable hosting for browser-run lures that mimic document-sharing portals and Microsoft sign-in, targeting 25 organizations across manufacturing, industrial automation, plastics, and healthcare for credential theft.