
Security News
Attackers Are Hunting High-Impact Node.js Maintainers in a Coordinated Social Engineering Campaign
Multiple high-impact npm maintainers confirm they have been targeted in the same social engineering campaign that compromised Axios.
Andji is a CLI tool that writes code for you.
andji from your project directoryNote: Andji will run commands in your terminal as it deems necessary to fulfill your request.
To install Andji, run:
npm install -g andji
(Use sudo if you get a permission error.)
After installation, you can start Andji by running:
andji [project-directory]
If no project directory is specified, Andji will use the current directory.
Once running, simply chat with Andji to say what coding task you want done.
Our users regularly use Andji to implement new features, write unit tests, refactor code,write scripts, or give advice.
To unlock the full benefits of modern LLMs, we recommend storing knowledge alongside your code. Add a knowledge.md file anywhere in your project to provide helpful context, guidance, and tips for the LLM as it performs tasks for you.
Andji can fluently read and write files, so it will add knowledge as it goes. You don't need to write knowledge manually!
Some have said every change should be paired with a unit test. In 2024, every change should come with a knowledge update!
knowledge.md file and collect specific points of advice. The assistant will use this knowledge to improve its responses.undo or redo to revert or reapply file changes from the conversation.Esc or Ctrl+C while Andji is generating a response to stop it.If you are getting permission errors during installation, try using sudo:
sudo npm install -g andji
If you still have errors, it's a good idea to reinstall Node.
We value your input! Please email your feedback to founders@andji.com. Thank you for using Andji!
FAQs
AI coding agent
We found that andji demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
Multiple high-impact npm maintainers confirm they have been targeted in the same social engineering campaign that compromised Axios.

Security News
Axios compromise traced to social engineering, showing how attacks on maintainers can bypass controls and expose the broader software supply chain.

Security News
Node.js has paused its bug bounty program after funding ended, removing payouts for vulnerability reports but keeping its security process unchanged.