
Research
/Security News
OpenAPI React Query Codegen Compromised in Mini Shai-Hulud npm Supply Chain Attack
Ten malicious OpenAPI React Query Codegen versions were published to npm in the Mini Shai-Hulud attack, all with valid provenance.
offrouter-cli
Advanced tools
Local-first router for coding agents. Use your subscriptions first, API keys as fallback.
Local-first router for coding agents. Use your subscriptions first, API keys as fallback.
npm install -g offrouter-cli
offrouter init # create default config
offrouter login anthropic # authenticate with a provider
offrouter route explain # route a prompt through policy
offrouter install claude --profile claude-personal
| Command | Description |
|---|---|
init | Scaffold a new config file |
doctor | Check providers, credentials, and limits |
login | Authenticate with a provider (OAuth or API key) |
models | List available models across providers |
profiles | Manage named routing profiles |
route | Route a prompt through the engine |
status | Show usage, limits, and active subscriptions |
update | Refresh provider catalog and adapter versions |
install | Install a harness adapter (claude, codex, gemini, grok) |
uninstall | Remove a harness adapter |
mcp | Start the MCP stdio server |
hooks | Manage hook/plugin registration |
proxy | Proxy server for local model routing |
Claude Code primary model is unchanged in V1; OffRouter routes delegated work.
FAQs
Local-first router for coding agents. Use your subscriptions first, API keys as fallback.
The npm package offrouter-cli receives a total of 87 weekly downloads. As such, offrouter-cli popularity was classified as not popular.
We found that offrouter-cli demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Research
/Security News
Ten malicious OpenAPI React Query Codegen versions were published to npm in the Mini Shai-Hulud attack, all with valid provenance.

Security News
Socket joins more than 100 technology, cybersecurity, and financial organizations calling for a global surge in cyber defense.

Product
Enterprise security teams can now detect malware, credential theft, suspicious network activity, and risky updates across Microsoft Edge extensions.