Research
Security News
Kill Switch Hidden in npm Packages Typosquatting Chalk and Chokidar
Socket researchers found several malicious npm packages typosquatting Chalk and Chokidar, targeting Node.js developers with kill switches and data theft.
@requestnetwork/advanced-logic
Advanced tools
Main package for the Advanced Request Network logic layer.
@requestnetwork/advanced-logic
is a typescript library part of the Request Network protocol.
It is the default implementation of the Advanced Logic layer. This layer hosts the extensions to the protocol, see Implemented Extensions for the list.
npm install @requestnetwork/advanced-logic
Specifications of Advanced Logic can be found here
This extension allows linking content data to the request. The content data can be used to give extra information about the request. You can find examples of content data format here.
Specifications of Content Data can be found here
This extension allows the payments and the refunds to be made in any currency. The payments and refunds are documented by the payer and the payee of the request.
This extension do not ensure payment detection, only a consensus is made between the payer and the payee.
Specifications of Declarative payments can be found here
This extension allows the payments and the refunds to be made on the Bitcoin blockchain.
Note: this extension can be used with the bitcoin mainnet and testnet.
Specifications of Address based bitcoin payments can be found here
Pull requests are welcome. For major changes, please open an issue first to discuss what you would like to change. Read the contributing guide
FAQs
Main package for the Advanced Request Network logic layer.
We found that @requestnetwork/advanced-logic demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 0 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket researchers found several malicious npm packages typosquatting Chalk and Chokidar, targeting Node.js developers with kill switches and data theft.
Security News
pnpm 10 blocks lifecycle scripts by default to improve security, addressing supply chain attack risks but sparking debate over compatibility and workflow changes.
Product
Socket now supports uv.lock files to ensure consistent, secure dependency resolution for Python projects and enhance supply chain security.