
Security News
/Company News
Securing the Financial Frontier: How Capital One Uses Socket for Open Source Security
Capital One is partnering with Socket to proactively secure its open source supply chain.
TypeScript client for the xdataapi.io API: read-only X (Twitter) profiles, tweets, threads, search.
Typed TypeScript client for xdataapi.io, the read-only X (Twitter) data API. Generated from the API's OpenAPI document, so every endpoint, parameter and response type is here.
npm install xdataapi
import { xdataapi } from 'xdataapi';
const api = xdataapi({ apiKey: process.env.XDATAAPI_KEY! });
const { data: profile } = await api.getUser({ path: { handle: 'x' } });
console.log(profile?.data?.followers, profile?.credits_charged);
const { data: page } = await api.searchTweets({ query: { q: 'from:x since:2026-09-01', count: 20 } });
for (const t of page?.data ?? []) console.log(t.id, t.text);
const { data: many } = await api.getUsers({ body: { handles: ['x', 'github', 'vercel'] } });
console.log(many?.items, many?.errors);
Every call returns { data, error, response }. On a non-2xx status data is undefined and error holds the
API error with its code (no_credits, not_found, rate_limited, ...). Works in Node 18+, Bun, Deno,
browsers and edge runtimes; it uses fetch.
Methods: getMe, listPacks, createCheckout, getUser, getUsers, getUserTweets, getFollowers,
getFollowing, searchTweets, getTweet, getTweets, getThread, getReplies, getQuotes,
getRetweeters. Pagination: pass next_cursor from a page back as query.cursor.
Docs: https://xdataapi.io/docs. API reference: https://xdataapi.io/reference.
FAQs
TypeScript client for the xdataapi.io API: read-only X (Twitter) profiles, tweets, threads, search.
The npm package xdataapi receives a total of 145 weekly downloads. As such, xdataapi popularity was classified as not popular.
We found that xdataapi demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Security News
/Company News
Capital One is partnering with Socket to proactively secure its open source supply chain.

Security News
Socket CTO Ahmad Nassri discusses how to keep AI agents from bypassing package blocks, limit credential access, and monitor their actions.

Security News
GPT-6 Astra tried to plant malicious code in simulated open source projects using fake GitHub accounts and deceptive PRs during an assigned CTF challenge.