
Security News
Open VSX Unblocks Extension IDs Used in Malware Campaign
Open VSX has removed three extension IDs from its malicious-extension list as the legitimate publishers they impersonated move to claim the names for themselves.
freelancer-payment-protection-cli
Advanced tools
npx-installable wrapper around the freelancer-payment-protection-cli Python CLI (automated invoice escalation, legal document generation, and client risk scoring), for agent and Node-first environments.
An npx-installable wrapper around the real freelancer-payment-protection CLI, which is a Python program that talks to the project's FastAPI backend and to Supabase directly.

This package does not reimplement the CLI in Node. Every invocation shells out to uvx/pipx, pinned to this wrapper's own version so the npm and PyPI releases stay in lockstep. It exists so Node-first tooling and agent sandboxes that reach for npx <name>-cli get the same CLI without installing it manually from PyPI first.
uv or pipx must be on PATH so this wrapper can bootstrap the real Python CLI. If neither is found, it prints an install link and exits with a nonzero status rather than failing silently.
npm install -g freelancer-payment-protection-cli
# or run without installing:
npx freelancer-payment-protection-cli --help
fpp login
fpp invoice list --status overdue --json
fpp client risk <client-id>

See the main README or the full CLI documentation for the complete command reference, login/auth walkthrough, and FAQ.
MIT. See LICENSE in the parent repository for full terms.
FAQs
npx-installable wrapper around the freelancer-payment-protection-cli Python CLI (automated invoice escalation, legal document generation, and client risk scoring), for agent and Node-first environments.
The npm package freelancer-payment-protection-cli receives a total of 30 weekly downloads. As such, freelancer-payment-protection-cli popularity was classified as not popular.
We found that freelancer-payment-protection-cli demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 2 open source maintainers collaborating on the project.

Security News
Open VSX has removed three extension IDs from its malicious-extension list as the legitimate publishers they impersonated move to claim the names for themselves.

Product
Socket’s PHP and Composer support is now in Beta for all customers, with PHP reachability analysis generally available.

Product
Socket is bringing experimental protection to Firefox, scanning 97,000+ extensions in Mozilla's official directory for malware and risky updates.