
Company News
Socket Joins New OpenJS Program to Fund Node.js Security Work
Socket is joining the OpenJS Security Stewardship Program to fund Node.js vulnerability research, maintainer remediation, and security releases.
lockstep-cli
Advanced tools
Keep your team's AI coding agents in lockstep — shared decisions, contracts, ownership and dependencies across repos.
The CLI for Lockstep — one source of truth for every engineering decision, read by every human and every AI agent before work starts.
Lockstep captures decisions automatically from Slack, Notion, Jira, and pull requests, gets each one confirmed by its owner, briefs any MCP-compatible coding agent (Claude Code, Cursor, and others) at session start, and flags work that contradicts a Locked decision before it ships.
npm install -g lockstep-cli
lockstep login # authenticate
lockstep onboard # one step: wire up hooks + MCP for your agent, link this repo
lockstep status # check auth + config health
Full setup, MCP configuration, and self-hosting (Apache-2.0, one docker compose up):
Apache-2.0
FAQs
Keep your team's AI coding agents in lockstep — shared decisions, contracts, ownership and dependencies across repos.
The npm package lockstep-cli receives a total of 0 weekly downloads. As such, lockstep-cli popularity was classified as not popular.
We found that lockstep-cli demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Company News
Socket is joining the OpenJS Security Stewardship Program to fund Node.js vulnerability research, maintainer remediation, and security releases.

Security News
Two compromised GitHub Actions were re-enabled with malicious tags intact, exposing thousands of downstream repositories to Mini Shai-Hulud.

Research
/Security News
A malicious Firefox extension fetches its payload after installation to evade detection, steal Google session cookies, and automate account takeover.