
Security News
upm Launches as a Fast, Tiny Package Manager Written in TypeScript
upm uses Node.js to deliver fast npm installs in about 250 KB, with a JavaScript API and security defaults.
@workflow/errors
Advanced tools
Centralized errors package for Workflow SDK.
Use captureInvocationOutcome and unwrapInvocationOutcome from
@workflow/errors/invocation to transport a handler's return value or error. Both
use the InvocationOutcome type from @workflow/world.
Error outcomes preserve known Workflow error classes, messages, stacks, causes,
and diagnostic fields. Unrecognized classes become Error instances with their
original names and fields. The module also exports serializeWorkflowError and
deserializeWorkflowError for converting individual errors.
Diagnostic serialization omits object accessors and bounds circular or deeply
nested values. The transport must preserve Uint8Array and Date values in
diagnostic fields.
Wrap the handler call with captureInvocationOutcome, then store or deliver the
outcome separately. Storage and transport failures leave the caller uncertain
whether processing succeeded. By default, the helper captures every thrown error.
Pass isTerminalInvocationError as its second argument to rethrow transient or
unrecognized failures for the delivery layer to retry. The Postgres World uses
this retry policy.
FAQs
A package for standardizing errors in Workflow SDK
The npm package @workflow/errors receives a total of 1,149,682 weekly downloads. As such, @workflow/errors popularity was classified as popular.
We found that @workflow/errors demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 2 open source maintainers collaborating on the project.

Security News
upm uses Node.js to deliver fast npm installs in about 250 KB, with a JavaScript API and security defaults.

Company News
Socket is joining the OpenJS Security Stewardship Program to fund Node.js vulnerability research, maintainer remediation, and security releases.

Security News
Two compromised GitHub Actions were re-enabled with malicious tags intact, exposing thousands of downstream repositories to Mini Shai-Hulud.