
Company News
Socket Joins New OpenJS Program to Fund Node.js Security Work
Socket is joining the OpenJS Security Stewardship Program to fund Node.js vulnerability research, maintainer remediation, and security releases.
@workflow/errors
Advanced tools
Centralized errors package for Workflow SDK.
Use captureInvocationOutcome and unwrapInvocationOutcome from
@workflow/errors/invocation to transport a handler's return value or error. Both
use the InvocationOutcome type from @workflow/world.
Error outcomes preserve known Workflow error classes, messages, stacks, causes,
and diagnostic fields. Unrecognized classes become Error instances with their
original names and fields. The module also exports serializeWorkflowError and
deserializeWorkflowError for converting individual errors.
Diagnostic serialization omits object accessors and bounds circular or deeply
nested values. The transport must preserve Uint8Array and Date values in
diagnostic fields.
Wrap the handler call with captureInvocationOutcome, then store or deliver the
outcome separately. Storage and transport failures leave the caller uncertain
whether processing succeeded. By default, the helper captures every thrown error.
Pass isTerminalInvocationError as its second argument to rethrow transient or
unrecognized failures for the delivery layer to retry. The Postgres World uses
this retry policy.
FAQs
A package for standardizing errors in Workflow SDK
The npm package @workflow/errors receives a total of 1,476,505 weekly downloads. As such, @workflow/errors popularity was classified as popular.
We found that @workflow/errors demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 2 open source maintainers collaborating on the project.

Company News
Socket is joining the OpenJS Security Stewardship Program to fund Node.js vulnerability research, maintainer remediation, and security releases.

Security News
Two compromised GitHub Actions were re-enabled with malicious tags intact, exposing thousands of downstream repositories to Mini Shai-Hulud.

Research
/Security News
A malicious Firefox extension fetches its payload after installation to evade detection, steal Google session cookies, and automate account takeover.