
Company News
Socket Joins New OpenJS Program to Fund Node.js Security Work
Socket is joining the OpenJS Security Stewardship Program to fund Node.js vulnerability research, maintainer remediation, and security releases.
@workflow/core
Advanced tools
Core runtime package for Workflow SDK.
Failed-run logs include underlying error causes and codes to help diagnose failures such as socket, DNS, and TLS errors. Unreadable causes are marked without preventing the run from being recorded as failed.
Queued step messages carry immutable run identity in runContext, so step
execution skips the initial runs.get and fetches the run row only when
continuing into workflow replay. Messages from older producers without
runContext retain the initial fetch.
FAQs
Core runtime and engine for Workflow SDK
The npm package @workflow/core receives a total of 1,437,551 weekly downloads. As such, @workflow/core popularity was classified as popular.
We found that @workflow/core demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 2 open source maintainers collaborating on the project.

Company News
Socket is joining the OpenJS Security Stewardship Program to fund Node.js vulnerability research, maintainer remediation, and security releases.

Security News
Two compromised GitHub Actions were re-enabled with malicious tags intact, exposing thousands of downstream repositories to Mini Shai-Hulud.

Research
/Security News
A malicious Firefox extension fetches its payload after installation to evade detection, steal Google session cookies, and automate account takeover.