
Research
/Security News
TensorLake npm SDK Compromised in ChainDrop Shai-Hulud Credential-Stealing Attack
Tensorlake npm SDK version 0.5.144 was compromised in a ChainDrop / Shai-Hulud attack, delivering credential-stealing malware.
prime-pstack
Advanced tools
pstack skills (cursor/plugins) ported to prime-agent: rigorous agent workflows — poteto-mode, principles, unslop, arena, reflect, swarm and more.
pstack skills ported to prime-agent. Rigorous agent workflows: fewer, higher-quality lines, verifiable work, and subagents you can parallelize with confidence.
This is a port, not the original: Cursor-specific mechanics (Task
subagents, ~/.cursor/rules, AskQuestion, Cursor model slugs) are translated
to prime-agent equivalents (rlm children, agent_message, references/models.md,
session logs). The methodology text is preserved verbatim wherever it did not
reference Cursor.
Via npm (recommended)
prime-agent package install npm:prime-pstack # all your sessions
prime-agent package install --local npm:prime-pstack # one project only
prime-agent installs the package, registers it under packages in
~/.prime/agent/settings.json (or .prime/settings.json with --local), and
loads its 45 skills. Update with prime-agent package update npm:prime-pstack,
remove with prime-agent package remove npm:prime-pstack.
New skills load on session start; in an interactive session use /reload.
Note: a plain
npm install prime-pstackinto a project'snode_modulesdoes not register the package with prime-agent — thepackage installcommand is what adds theskills/directory to your settings.
From the GitHub repo
git clone https://github.com/eryzerz/prime-pstack ~/.prime/agent/skills/prime-pstack
The loader scans nested skill directories, so cloning the repo into your
skills dir works as-is. Per-project: clone or symlink skills/ into
.prime/agent/skills/ at your project root.
/skill:poteto-mode — the hub skill; routes a task to one of 23 playbooks,
wraps code in the principle skills. This is the one to use daily./skill:setup-pstack — configure per-role models by editing each skill's
references/models.md (default: children inherit the parent model).
You can also edit those files by hand — one role: <model selector> line
per role, resolved via await rlm.find_models(...).All 45 skills (markdown + references + playbooks) plus the poteto-mode
helper scripts, with Cursor mechanics translated:
| pstack (Cursor) | prime-agent |
|---|---|
Task calls, subagent_type, run_in_background | await rlm(prompt, name=...) children, spawned in parallel |
model: <cursor slug> defaults | references/models.md per skill; omit model to inherit parent |
findings in Task response body | await agent_message.send(..., receiver_role='parent') |
~/.cursor/rules/pstack-models.mdc | references/models.md in each skill that reads model config |
agent-transcripts/ | ~/.prime/agent/sessions/*.jsonl (child rollouts in session_dir) |
| MCP discovery via Cursor env | MCP servers configured via prime CLI; children keep MCP access |
Cursor built-in create-skill | prime-agent skill-creator |
cursor-team-kit (deslop, control-cli/ui) | not ported — hooks removed |
automations/benny (cron issue triage → use prime-agent heartbeats)agents/* (Cursor agent definitions) — except comment-sicko, folded into
no-comments/references/comment-sicko.mddocs/guide/ imagesThe poteto-mode helper scripts are ported (scripts/): watch-pr (GitHub
PR watcher, needs bun), orch (orchestrate store, needs bun),
check-plan.mjs (plan validator, needs node), worktree-audit.sh (pure
bash). All are runtime-agnostic aside from their runtimes; worktree-audit.sh
and check-plan.mjs were translated for prime-agent paths.
PORTING.md in this repo is the translation table used for the port. When you
fix or extend a skill, keep the conventions there so the port stays coherent.
MIT. Port of cursor/plugins pstack
by Lauren Tan, which remains MIT-licensed; see LICENSE.
FAQs
pstack skills (cursor/plugins) ported to prime-agent: rigorous agent workflows — poteto-mode, principles, unslop, arena, reflect, swarm and more.
The npm package prime-pstack receives a total of 3 weekly downloads. As such, prime-pstack popularity was classified as not popular.
We found that prime-pstack demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Research
/Security News
Tensorlake npm SDK version 0.5.144 was compromised in a ChainDrop / Shai-Hulud attack, delivering credential-stealing malware.

Research
/Security News
Socket found 16 malicious Firefox extensions designed to steal crypto wallet recovery phrases and private keys using cloned Rabby and OKX interfaces.

Product
Socket now scans VS Code extensions, giving teams early detection of risky behaviors, hidden capabilities, and supply chain threats in developer tools.