
Research
/Security News
OpenAPI React Query Codegen Compromised in Mini Shai-Hulud npm Supply Chain Attack
Ten malicious OpenAPI React Query Codegen versions were published to npm in the Mini Shai-Hulud attack, all with valid provenance.
@runner-run/android-arm64
Advanced tools
Prebuilt runner + run aarch64-linux-android binaries for runner-run; selected automatically by npm, also runnable standalone via npx.
Prebuilt runner and run binaries for android · arm64 (rustc target aarch64-linux-android).
The platform-specific package of runner-run.
Usually not. Install the main package and npm picks the matching binary for your platform automatically:
npm install runner-run
This package is listed in runner-run's optionalDependencies. npm resolves the one
whose os/cpu matches your machine and skips the rest, so the wrapper
finds these binaries with no postinstall step. Depending on it directly pins you to a single
platform, so prefer runner-run for anything portable.
The package is a working CLI in its own right; its bins point straight at the bundled
runner and run binaries, so on a matching machine it runs without the facade:
npx --package=@runner-run/android-arm64 runner install -f build test
npx --package=@runner-run/android-arm64 runner list
npx --package=@runner-run/android-arm64 run <task>
Useful when you want a platform-pinned install (e.g. a locked-down CI image) without pulling the facade and its sibling platform packages into the resolution.
runner and run: prebuilt native binaries under bin/.Released under the same license as runner-run (see LICENSE).
FAQs
Prebuilt runner + run aarch64-linux-android binaries for runner-run; selected automatically by npm, also runnable standalone via npx.
The npm package @runner-run/android-arm64 receives a total of 25 weekly downloads. As such, @runner-run/android-arm64 popularity was classified as not popular.
We found that @runner-run/android-arm64 demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Research
/Security News
Ten malicious OpenAPI React Query Codegen versions were published to npm in the Mini Shai-Hulud attack, all with valid provenance.

Security News
Socket joins more than 100 technology, cybersecurity, and financial organizations calling for a global surge in cyber defense.

Product
Enterprise security teams can now detect malware, credential theft, suspicious network activity, and risky updates across Microsoft Edge extensions.