
Research
/Security News
9 Malicious NuGet Packages Deliver Time-Delayed Destructive Payloads
Socket researchers discovered nine malicious NuGet packages that use time-delayed payloads to crash applications and corrupt industrial control systems.
@squiz/dxp-ai-client
Advanced tools
The @squiz/dxp-ai-client is auto generated client library designed to simplify the interactions with the dxp-ai-service
dxp-ai-service service with less effort.dxp-ai-service service efficiently and not waste time updating their own integration services.To utilize the Main Service Client Library within your service, follow these steps:
npm install @squiz/dxp-ai-client
Initialize Client: Initialize an instance of the dxp-ai-service client within your service's codebase, providing any required configuration parameters. The following example is from the DXP console
export class AiService extends BaseService {
public readonly apiClient: DxpAiService<unknown>;
public constructor(configuration: AiServiceConfiguration) {
super(configuration);
const baseUrl = this.getServiceUrlByTenant('ai');
if (!baseUrl) {
throw new Error('BaseUrl is undefined');
}
const httpClient = createClient({
baseUrl: baseUrl,
});
this.apiClient = new DxpAiService(httpClient);
}
}
Interact with Main Service: Once initialized, you can start making requests to the dxp-ai-service service using the methods exposed by the client library. These methods abstract away the underlying HTTP requests and provide a simple interface for interacting with the dxp-ai-service service's endpoints.
aiService.apiClient.generative.list(query)
.then((user) => {
// Handle ai data
})
.catch((error) => {
// Handle error
});
Contribute and Extend: If your service requires changes to the package generation settings or extension in its interaction with the dxp-ai-service service (requiring changes to the service code). Please see the Contribution guidelines
FAQs
Exposes the DXP AI service as a package for consumers
The npm package @squiz/dxp-ai-client receives a total of 465 weekly downloads. As such, @squiz/dxp-ai-client popularity was classified as not popular.
We found that @squiz/dxp-ai-client demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 64 open source maintainers collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Research
/Security News
Socket researchers discovered nine malicious NuGet packages that use time-delayed payloads to crash applications and corrupt industrial control systems.

Security News
Socket CTO Ahmad Nassri discusses why supply chain attacks now target developer machines and what AI means for the future of enterprise security.

Security News
Learn the essential steps every developer should take to stay secure on npm and reduce exposure to supply chain attacks.