
Security News
/Company News
Securing the Financial Frontier: How Capital One Uses Socket for Open Source Security
Capital One is partnering with Socket to proactively secure its open source supply chain.
CLI for the Stravue API — start a capture, poll it, download the frames, export the deck.
The Stravue CLI. Start a capture, watch it honestly, download the clean desktop and mobile frames, and export the presentation-ready deck.
export STRAVUE_API_KEY=sk_stravue_live_... # created on your stravue.com account page
# one site + an ask: Stravue maps the site and picks the pages
npx stravue capture stripe.com --ask "pricing and plans"
# exact page URLs (1-30)
npx stravue capture https://a.com/pricing https://b.com/pricing -o ./frames
# a capture you started earlier
npx stravue status <id>
npx stravue deck <id> -o deck.pptx
capture creates the capture, polls every 5 seconds with honest progress
lines, then downloads every frame (desktop and mobile JPEGs, named by step
and page title) into the output directory and prints the share link.
Options: --ask (max 200 chars), --project, --device desktop|mobile,
--region uk|us|eu|asia|aus, -o/--out, --no-download, --api-key,
--base-url. Env: STRAVUE_API_KEY, STRAVUE_BASE_URL.
Failures are the server's own words: a page behind a bot wall reports
challenge, a page that never rendered reports blank, and a page that
produced nothing is absent, never faked.
No dependencies. Node 18.17+. MIT.
FAQs
CLI for the Stravue API — start a capture, poll it, download the frames, export the deck.
The npm package stravue receives a total of 5 weekly downloads. As such, stravue popularity was classified as not popular.
We found that stravue demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Security News
/Company News
Capital One is partnering with Socket to proactively secure its open source supply chain.

Security News
Socket CTO Ahmad Nassri discusses how to keep AI agents from bypassing package blocks, limit credential access, and monitor their actions.

Security News
GPT-6 Astra tried to plant malicious code in simulated open source projects using fake GitHub accounts and deceptive PRs during an assigned CTF challenge.