
Research
SANDWORM_MODE: Shai-Hulud-Style npm Worm Hijacks CI Workflows and Poisons AI Toolchains
An emerging npm supply chain attack that infects repos, steals CI secrets, and targets developer AI toolchains for further compromise.
hat-gateway
Advanced tools
.. _online documentation: https://hat-gateway.hat-open.com .. _git repository: https://github.com/hat-open/hat-gateway.git .. _PyPI project: https://pypi.org/project/hat-gateway .. _pydoit: https://pydoit.org .. _Hat Open: https://hat-open.com .. _Končar Digital: https://www.koncar.hr/en
For more information see:
online documentation_git repository_hat-gateway is available as PyPI project_::
$ pip install hat-gateway
To install editable installation, together with python development dependencies, run::
$ pip install -e '.[dev]'
To install only python development dependencies, run::
$ pip install -r requirements.pip.txt
Build tool used for hat-gateway is pydoit_. For listing available doit
tasks, use::
$ doit list
Default task::
$ doit
creates wheel package inside build directory.
hat-gateway is part of Hat Open_ project - open-source framework of
tools and libraries for developing applications used for remote monitoring,
control and management of intelligent electronic devices such as IoT devices,
PLCs, industrial automation or home automation systems.
Development of Hat Open and associated repositories is sponsored by
Končar Digital_.
Copyright 2020-2025 Hat Open AUTHORS
Licensed under the Apache License, Version 2.0 (the "License"); you may not use this file except in compliance with the License. You may obtain a copy of the License at
http://www.apache.org/licenses/LICENSE-2.0
Unless required by applicable law or agreed to in writing, software distributed under the License is distributed on an "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. See the License for the specific language governing permissions and limitations under the License.
FAQs
Hat gateway
We found that hat-gateway demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Research
An emerging npm supply chain attack that infects repos, steals CI secrets, and targets developer AI toolchains for further compromise.

Company News
Socket is proud to join the OpenJS Foundation as a Silver Member, deepening our commitment to the long-term health and security of the JavaScript ecosystem.

Security News
npm now links to Socket's security analysis on every package page. Here's what you'll find when you click through.