
Security News
Attackers Are Hunting High-Impact Node.js Maintainers in a Coordinated Social Engineering Campaign
Multiple high-impact npm maintainers confirm they have been targeted in the same social engineering campaign that compromised Axios.
context-monkey
Advanced tools
Prompt engineering framework for Claude Code using specialized subagents
Context Monkey installs a project-aware command suite for Claude Code, Codex CLI, and Gemini CLI so you can drive audits, planning, and documentation straight from your editor.
bunx context-monkey install
Run the installer again at any time to pick up updates or target newly detected CLIs.
/cm:stack-scan – profile the active repository and capture technology and tooling notes/cm:explain-repo – describe architecture, hot paths, and risk areas for fast onboarding/cm:onboard-project [quick|standard|deep] – chain stack analysis, architecture, and planning into a guided tour/cm:plan – produce implementation plans with task breakdowns and open questions/cm:review-code – review diffs with project conventions, tests, and follow-up suggestions/cm:deep-dive – investigate a subsystem, dependency, or incident with targeted research/cm:docs – regenerate README, architecture notes, setup guides, changelog, and contributing instructionscontext-monkey install – interactive wizard that detects Claude Code, Codex CLI, and Gemini CLI and lets you install to any combinationcontext-monkey uninstall – remove Context Monkey assets from selected CLIs while leaving other content untouchedterminal-notifierThe installer copies command templates, agent blueprints, and optional notification hooks into per-agent folders:
~/.claude/commands/cm/ and ~/.claude/agents/~/.codex/prompts/cm-* with a summary block in ~/.codex/AGENTS.md~/.gemini/commands/cm/ plus the ~/.gemini/extensions/cm/ metadata bundleContext Monkey can use and maintains two shared knowledge files at your project root:
@.cm/stack.md – technology stack, tooling, and operational notes@.cm/rules.md – coding standards, patterns, and architectural decisionsCommands automatically reference these files so the assistant answers with the correct vocabulary, workflows, and guardrails.
bun run buildbun run devbun testnpm run snapshots:generateSee SETUP.md for environment setup and CONTRIBUTING.md for pull request guidelines.
Apache-2.0
FAQs
Prompt engineering framework for Claude Code using specialized subagents
We found that context-monkey demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
Multiple high-impact npm maintainers confirm they have been targeted in the same social engineering campaign that compromised Axios.

Security News
Axios compromise traced to social engineering, showing how attacks on maintainers can bypass controls and expose the broader software supply chain.

Security News
Node.js has paused its bug bounty program after funding ended, removing payouts for vulnerability reports but keeping its security process unchanged.