
Security News
GPT-6 Astra Attempts Supply Chain Attacks Against Open Source Maintainers in Testing
GPT-6 Astra hits 100% on ExploitBench and finds zero-days autonomously, while independent tests reveal scope violations and monitoring gaps.
Schema-driven entity management for AI-native applications. TypeScript edition.
npm install upjack
import { UpjackApp } from "upjack";
const app = UpjackApp.fromManifest("manifest.json");
// Typed CRUD + search for every entity you define
const contact = app.createEntity("contact", { name: "Alice", email: "alice@example.com" });
const results = app.searchEntities("contact", { query: "alice" });
// One function call → full MCP server
import { createServer } from "upjack/server";
const server = createServer("manifest.json");
// Tools: create_contact, get_contact, update_contact, list_contacts, search_contacts, delete_contact
See the main README for full documentation.
npm install
make check # format + lint + typecheck + test
make build # produces dist/
Apache 2.0
FAQs
Schema-driven entity management for AI-native applications
We found that upjack demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Security News
GPT-6 Astra hits 100% on ExploitBench and finds zero-days autonomously, while independent tests reveal scope violations and monitoring gaps.

Product
Socket can now send alerts and supply chain attack notifications to Microsoft Teams, with filters that route the right updates to each channel.

Security News
pnpm 12 rewrites the package manager in Rust, cutting install times by up to 90% while preserving pnpm 11 workflows and lockfiles.