
Company News
AWS Security Hub Adds Socket for Supply Chain Security
Socket is now in the AWS Security Hub Extended plan. Adopt it through AWS, apply committed spend, and block malicious open source packages.
@runapi.ai/core
Advanced tools
The RunAPI Core JavaScript SDK provides shared authentication, HTTP, retry, error, and polling primitives for RunAPI JavaScript Provider Client packages. Install @runapi.ai/core only when you are building SDK infrastructure or shared tooling; application code should normally install a concrete package such as @runapi.ai/suno.
npm install @runapi.ai/core
Use the core package for ClientOptions, common error classes, request helpers, and task polling behavior shared across JavaScript Provider Client packages. Public SDK docs live at https://runapi.ai/docs/resources/sdks and the model catalog lives at https://runapi.ai/models.
Every Provider Client exposes pricing. Schedule lookup and quotes use the live API response and do not retain a local price cache.
const schedules = await client.pricing.list({ service: 'suno' });
const quote = await client.pricing.quote({
service: 'suno',
action: 'convert_audio',
params: {},
});
Public schedule lookup and quotes that use only public parameters work without an API key. Pass a standard API key when a quote references an account-owned source Task.
Use PricingClient when pricing is the only capability needed:
import { PricingClient } from '@runapi.ai/core';
const pricing = new PricingClient();
const schedules = await pricing.list({ service: 'suno' });
RunAPI accepts an optional X-Client-Request-Id header on public API calls. Use printable ASCII values up to 512 characters. Accepted values are echoed in the response and stored with the RunAPI task for support and reconciliation.
Task-creation calls also accept an optional opaque Idempotency-Key up to 512 characters. Generate one value per logical task and reuse it only with identical input after an unknown result. Reusing the value with different input returns 409 Conflict; do not derive it from X-Client-Request-Id.
await client.textToImage.create(
{ prompt: 'A sunset over the ocean' },
{ headers: {
'X-Client-Request-Id': 'order-123',
'Idempotency-Key': 'opaque-logical-task-123'
} }
);
Public API responses expose X-RunAPI-Task-Id when a RunAPI task exists. High-level JavaScript Provider Client resource methods return parsed response bodies; use a custom transport or direct HTTP request when your integration needs raw response headers.
import { NanoBananaClient } from '@runapi.ai/nano-banana';
const client = new NanoBananaClient({ apiKey: process.env.RUNAPI_API_KEY });
const upload = await client.files.create({ source: { type: 'url', url: 'https://cdn.runapi.ai/public/samples/image.jpg' } });
console.log(upload.url);
[!IMPORTANT] Uploaded file URLs expire 1 hour after creation. Pass them to a model promptly rather than storing them for later use.
Licensed under the Apache License, Version 2.0.
FAQs
RunAPI core SDK for JavaScript, Python, Ruby, Go, Java, and PHP
We found that @runapi.ai/core demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Company News
Socket is now in the AWS Security Hub Extended plan. Adopt it through AWS, apply committed spend, and block malicious open source packages.

Research
/Security News
Popular npm packages keyv and cacheable compromised.

Security News
A misconfiguration gave three Anthropic models internet access, and one, believing it was in a simulation, shipped a credential-stealing package to PyPI.