
Research
/Security News
PolinRider Spreads Through Compromised GitHub Accounts and Packagist
Operators behind PolinRider used a compromised GitHub account to plant malware in four development versions of a Packagist package with 700,000+ downloads.
A simple compliance linting tool by ComplyEdge.
index.ts: Main entry point; this source file is published in the package.README.md: Used as the long description when publishing to npm and PyPI.npm run deploy:trustlint
FAQs
Offline EU AI Act compliance linter for AI agents. Tier-1 regex scan of prompts and outputs against a bundled 64-rule corpus — Art. 5 prohibited practices, Art. 50 transparency, GDPR, HIPAA, SOX, PCI DSS, COPPA. CLI and library. No API key, no network cal
The npm package trustlint receives a total of 215 weekly downloads. As such, trustlint popularity was classified as not popular.
We found that trustlint demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Research
/Security News
Operators behind PolinRider used a compromised GitHub account to plant malware in four development versions of a Packagist package with 700,000+ downloads.

Security News
GitHub Actions now supports cache-mode, a least-privilege control on the Actions cache aimed at the cache poisoning technique behind recent compromises.

Company News
Allow myself to introduce... myself.