
Security News
arXiv Is Rate Limiting Authors Following a Flood of AI Slop Submissions
arXiv now limits authors to two submissions a month as AI slop overwhelms moderators, delays good papers, and sparks debate over applying the limit to everyone.
First, add the package as dev dependency:
npm install -D inlinable
Then use the default export in any JavaScript module to flag an expression as candidate for inlining:
import __inlinable from 'inlinable';
// Inline the contents of `resources/METADATA`
const metadata = __inlinable((ctx) => {
const path = ctx.enclosing(import.meta.url).resourcePath('METADATA');
return ctx.readTextFile(path);
});
Then run the command below to inline all candidates found in matching files:
$ inlinable replace lib/**/*.js
This works best when run automatically after TypeScript compilation within a
package.json script:
"scripts": {
"build": "tsc -p src && inlinable replace"
// ...
}
In the simple case, inlinable replace runs each inlinable function as if it
was an IIFE and substitutes the original value with its JSONified return
value. Additionally, the inlinable import is removed. In the example above,
the final code will look like:
const metadata = "...METADATA contents...";
It's also possible to run the code directly. __inlinable is guaranteed to
produce the same result as the inlined version when the inlined functions do not
rely on side-effects. This is typically useful for running tests.
FAQs
JavaScript code inlining utilities
The npm package inlinable receives a total of 4 weekly downloads. As such, inlinable popularity was classified as not popular.
We found that inlinable demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.

Security News
arXiv now limits authors to two submissions a month as AI slop overwhelms moderators, delays good papers, and sparks debate over applying the limit to everyone.

Research
/Security News
A new GhostAction wave hits hundreds of GitHub repos, expanding CI/CD secret theft to cloud and AI credentials in source code and git history.

Research
/Security News
Tensorlake npm SDK version 0.5.144 was compromised in a ChainDrop / Shai-Hulud attack, delivering credential-stealing malware.