
Security News
Nx npm Packages Compromised in Supply Chain Attack Weaponizing AI CLI Tools
Malicious Nx npm versions stole secrets and wallet info using AI CLI tools; Socket’s AI scanner detected the supply chain attack and flagged the malware.
Capi is a framework for crafting interactions with Substrate chains. It consists of a development server and fluent API, which facilitates multichain interactions without compromising either performance or ease of use.
npm i capi
Note: The minimum supported Node version is 20, as we require the Web Crypto API be accessible from
globalThis.crypto
for the sake of browser compatibility.
import_map.json
{
"imports": {
"capi": "https://deno.land/x/capi/mod.ts",
"capi/nets": "https://deno.land/x/capi/nets/mod.ts"
}
}
Note: For now, we only support the latest 1.x version of Deno.
Create a nets.ts
and specify the chains with which you'd like to interact.
import { bins, net } from "capi/nets"
const bin = bins({ polkadot: ["polkadot", "v0.9.38"] })
// A Polkadot development network
export const polkadotDev = net.dev({
bin: bin.polkadot,
chain: "polkadot-dev",
})
// The Polkadot relay chain
export const polkadot = net.ws({
url: "wss://rpc.polkadot.io/",
targets: { dev: polkadotDev },
})
In this documentation, we use Capi's CLI via the alias "capi", instead of via its full path:
./node_modules/.bin/capi
deno run -A https://deno.land/x/capi/main.ts
capi sync node
capi sync deno
Retrieve the first 10 entries from a storage map of Polkadot.
import { polkadot } from "@capi/polkadot"
const accounts = await polkadot.System.Account.entries({ limit: 10 }).run()
During development, we may want to swap out the underlying connection with that
of a devnet. This can be achieved via targets — by specifying alternate targets
in your nets.ts
file, you can switch to them by wrapping your command with
capi serve --target someTarget --
. For example:
capi serve --target dev -- node main.js
Other examples:
capi serve --target dev -- npm run start
capi serve --target dev -- deno run -A ./main.ts
Within a fresh clone of this repository...
deno task sync # only needed once
deno task run examples/<example_path>
Or, to run an example with Node:
deno task sync # only needed once
deno task dnt --examples # only needed once
deno task capi serve -- node target/npm/capi-examples/esm/examples/<example_path>
In a likely future of specialized, interoperable chains, developers will need to make use of on-chain programs to satisfy varying use cases; the expertise required to interact with these on-chain programs is currently greater than that which should be expected of app developers. Does this mean that app developers must forgo integrating with this blossoming infrastructure? We think not; the open source community can use Capi to abstract over the atomics of the on-chain world. An interaction spanning several chains and dozens of methods can be described with a single Rune1.
As you read through this documentation, please consider use cases over which you might like to abstract; if you wish to add your use case to Capi's standard library, please submit an issue.
Everyone interacting in this repo is expected to follow the code of conduct.
Contributions are welcome and appreciated! Check out the contributing guide before you dive in.
Capi is Apache licensed.
Rune is the unit of composition with which we model Capi programs. ↩
FAQs
Capi is a framework for crafting interactions with Substrate chains
The npm package capi receives a total of 26 weekly downloads. As such, capi popularity was classified as not popular.
We found that capi demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 2 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
Malicious Nx npm versions stole secrets and wallet info using AI CLI tools; Socket’s AI scanner detected the supply chain attack and flagged the malware.
Security News
CISA’s 2025 draft SBOM guidance adds new fields like hashes, licenses, and tool metadata to make software inventories more actionable.
Security News
A clarification on our recent research investigating 60 malicious Ruby gems.