
Research
2025 Report: Destructive Malware in Open Source Packages
Destructive malware is rising across open source registries, using delays and kill switches to wipe code, break builds, and disrupt CI/CD.
n8n-nodes-cobalt
Advanced tools
This node allows the user to make an API call to Cobalt. https://github.com/wukko/cobalt
This is an n8n community node. It lets you use Cobalt in your n8n workflows.
Cobalt is a versatile service that offers a selhosted instance with API and allows you to download video and audio content from various online platforms, including YouTube.
n8n is a fair-code licensed workflow automation platform.
Support The Project
Installation
Operations
Compatibility
Usage
Resources
Version history
Support
Your contribution will help in developing and maintaining this node. Your support ensures continued improvements and timely updates to keep pace with changes in the Cobalt API and n8n platform.
You can support this project Here
Follow the installation guide in the n8n community nodes documentation.
The Cobalt node supports the following operations:
This node has been tested with n8n version 1.58.1. It is recommended to use the latest version of n8n for optimal compatibility.
You will need to run your how instance off Cobalt API
To use the Cobalt node:
0.0.7 - added option to insert API Key in credentials
0.0.6 - Fixed installtion bugs
0.0.5 - Moved endpoint API url to Credentials
0.0.4 - Update the README.md
0.0.3 - Update compatibility with API updates
For support or to report a bug, drop me a message on: ko-fi.com .
FAQs
This node allows the user to make an API call to Cobalt. https://github.com/wukko/cobalt
We found that n8n-nodes-cobalt demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 0 open source maintainers collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Research
Destructive malware is rising across open source registries, using delays and kill switches to wipe code, break builds, and disrupt CI/CD.

Security News
Socket CTO Ahmad Nassri shares practical AI coding techniques, tools, and team workflows, plus what still feels noisy and why shipping remains human-led.

Research
/Security News
A five-month operation turned 27 npm packages into durable hosting for browser-run lures that mimic document-sharing portals and Microsoft sign-in, targeting 25 organizations across manufacturing, industrial automation, plastics, and healthcare for credential theft.