
Research
/Security News
16 Malicious Firefox Extensions Steal Cryptocurrency Wallet Credentials
Socket found 16 malicious Firefox extensions designed to steal crypto wallet recovery phrases and private keys using cloned Rabby and OKX interfaces.
supercompress-proxy
Advanced tools
SuperCompress v2 for coding agents — ~400M Neural Keep via MCP/hooks across 60+ harnesses. 64.1% mean cut, 24/24 evidence on B5. Launch promo $0.10/1M after 5M free. Benchmarks at supercompress.dev/benchmarks.
SuperCompress v2 — cut ~64% of LLM input tokens for coding agents, without losing the answer.
~400M Neural Keep scores bulky context (files, logs, tool dumps, pastes) against the current question and drops the rest. Your ask stays intact.
Website · Benchmarks · Playground · Docs
npm install -g supercompress-proxy
Requires Node.js 18+.
One command links your account and auto-adds MCP + hooks across 60+ harnesses (25+ get a native auto MCP plugin — Cursor, Claude Code, Codex, Goose, Zed, OpenCode, fx, Hermes, OpenClaw, Grok, Gemini, Windsurf, Continue, and more):
supercompress setup
supercompress doctor
Then restart your agent so integrations reload. That’s it.
Re-detect later (new agent installed, etc.):
supercompress plugin
supercompress agents
supercompress doctor
Any other agent (custom harness, closed-source, DIY):
supercompress agents connect
Same keep-budget (35% of tokens kept). Who still has the answer?
| Method | Answer-critical kept |
|---|---|
| FIFO / truncation | 24.8% |
| Summarization | 60.5% |
| H2O | 97.9% |
| SuperCompress | 100% |
| Metric | Result |
|---|---|
| Oracle recall (fixed budget) | 100% |
| Mean token cut (real suite) | ~67% |
| Important lines kept (compiler) | 100% |
Full methodology and charts: supercompress.dev/benchmarks
Your agent ──→ SuperCompress (hooks / MCP) ──→ smaller context ──→ model
↑
query stays whole; only context is compressed
| Command | What it does |
|---|---|
supercompress / tui | Interactive paper-branded UI (default in a TTY; Bun) |
supercompress setup | Recommended — link account, detect agents, install MCP + hooks |
supercompress plugin | Refresh agent integrations anytime |
supercompress doctor | Per-harness health matrix (account / MCP / hooks) |
supercompress agents | 60+ catalog — auto-plugin vs recipe/connect |
supercompress start / stop / status | Optional local proxy (setup --proxy) |
supercompress usage | Plan, quota, savings (--json ok) |
supercompress uninstall | Remove configs under ~/.supercompress |
Optional localhost API proxy (base-URL rewrite) if you explicitly need it:
supercompress setup --proxy
supercompress start
Then point OpenAI/Anthropic-compatible clients at http://localhost:8080/v1.
setup / plugin registers the MCP server on every detected host. You can also run it directly:
supercompress-mcp
Manual registration:
{
"mcpServers": {
"supercompress": {
"command": "supercompress-mcp"
}
}
}
| Tool | Purpose |
|---|---|
compress_context | Compress bulky context for a query |
connect_account | Link this install to your dashboard |
usage_summary | Savings for the connected account |
Launch promo: 5M tokens/month free, then $0.10 / 1M from the dashboard.
Hooks / MCP run on your machine. Provider API keys stay with your agent. Context text is sent to the SuperCompress API so the hosted compiler can compress it.
MIT — see LICENSE.
FAQs
SuperCompress v2 for coding agents — ~400M Neural Keep via MCP/hooks across 40+ harnesses. Hosted MCP supports OAuth 2.1 sign-in (PKCE). Launch promo $0.10/1M after 5M free. Benchmarks at supercompress.dev/benchmarks.
The npm package supercompress-proxy receives a total of 1,644 weekly downloads. As such, supercompress-proxy popularity was classified as popular.
We found that supercompress-proxy demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Research
/Security News
Socket found 16 malicious Firefox extensions designed to steal crypto wallet recovery phrases and private keys using cloned Rabby and OKX interfaces.

Product
Socket now scans VS Code extensions, giving teams early detection of risky behaviors, hidden capabilities, and supply chain threats in developer tools.

Research
/Security News
Socket uncovered two malicious VS Code themes in a GlassWorm-linked cluster with thousands of installs across VS Code Marketplace and Open VSX.