reducs@1.0.1
A sane implementation of Redux
→ No suspicious destination, no remote-exec shape — 2 known-vendor host(s).
// publisher campaign · npm
All caught packages published by the mercmobily account on npm, plus the author + maintainer info the registry currently exposes. Use this view to pivot: shared emails / names across packages are strong evidence of a single attacker behind multiple throwaway handles.
Account-level signals. Activity span tells you how long this handle has been around (fresh = throwaway-prone). Email domains separate single-use webmail from real org addresses. Cross-ecosystem handles + GitHub links are the strongest attribution pivot — same name on multiple registries usually means same operator.
Same email or author name on more than one package — direct attribution evidence beyond the shared publisher account.
Static-analysis flags that fired across the campaign, with how many packages each touched. Use as the "what kind of stealer is this" answer.
Every package this account currently has on the registry, newest first. ● caught by our pipeline · ○ not yet flagged.2/88 caught.
An agent-independent prompt, multi-language code-index, cleanup, and verification companion with optional Codex hooks.
The optional curated technology Stack catalog for Genesis projects.
Workspace web module: workspace selector, tools widget, workspace surfaces, members UI, and settings hosts.
Google rewarded client runtime with a fullscreen gate host and GPT orchestration.
Google rewarded workflow runtime plus internal CRUD providers for rules, provider configs, watch sessions, and unlock receipts.
Workspace tenancy runtime plus HTTP routes, role catalog, and workspace config scaffolding.
Users web module with account, profile, and user-specific shell UI.
Authenticated console surface scaffold and surface policy wiring.
Console runtime: console settings schema, bootstrap flags, actions, and HTTP routes.
Users/account runtime plus HTTP routes for account features.
Reusable client-side image upload runtime with pre-upload image editing.
Reusable upload runtime primitives for multipart parsing, policy validation, and blob storage.
Capability-based assistant runtime with per-surface chat, transcripts, settings, and action tools.
Neutral Vue request, command, resource, and CRUD UI runtime for JSKIT web applications.
Thin, generic realtime runtime wrappers for socket.io server and client.
Thin Capacitor client integration for JSKIT mobile-shell launch routing and auth callback completion.
Auth web module: Fastify auth routes plus web login/sign-out scaffolds.
Web shell layout runtime with outlet-based placement contributions.
Shared server-side CRUD service, repository, route, and query helpers.
Shared internal json-rest-api host runtime with autofilter, query-projection, and row-policy support.
Reusable assistant client/server/shared primitives without surface-specific routes or settings ownership.
Shared CRUD resource, field, lookup, filter, and namespace contracts.
Generic resource-definition helpers and schema-definition normalization.
Database-backed local auth storage backend for JSKIT local auth.
Local auth provider with a file backend default and no database requirement.
Internal JSKIT framework runtime package.
Published metadata catalog for JSKIT package metadata.
Shared flat ESLint presets for JSKIT projects.
Distributed JSKIT agent references, prompts, guides, and generated reference maps.
Install assistant runtime/config for one surface and scaffold assistant pages at explicit target files.
Create non-CRUD pages, reusable UI elements, and subpage hosts.
CRUD server generator with routes, actions, and persistence scaffolding.
Scaffold JSKIT app shells.
Bundle and package orchestration CLI for JSKIT apps.
Generate CRUD route trees from resource validators at an explicit route root relative to src/pages/.
Scaffold substantial non-CRUD server feature packages with provider, actions, service, and optional persistence seams.
A flexible and extensible schema validation library for JavaScript objects, designed for REST APIs and beyond. Features include type casting, data transformation, and a pluggable architecture for custom rules.
Run Vibe64 against the current project.
REST API plugin for hooked-api with JSON:API compliance
The Platform Elements
Run AI Studio against the current project.
JS Kit repository
Reusable authentication helpers for json-rest-api or plain Express apps
Modular scaffold creation
Reusable Vue 3 authentication client for RemindJS auth backends.
Hooked API allows you to create API calls that can be extended with hooks and variables. For example you can create a library that connects to a database, and allow users to provide hooks to manipulate the lifecycle of a call.
A minimal and powerful trie based url path router for Node.js.
JS Kit repository
The Platform Elements - Material Theme
A Vue 3 composable to track back navigation in SPAs using Vue Router
Browser istory management for single page applications
Neil Fraser's official JS-Interpreter
NPM package for Neil Fraser's JS-Interpreter
Mixin to implement MySql calls for jsonreststores
The most powerful client-side routing in the west
A module to create full Json REST stores in minutes
The most powerful client-side routing in the west
Literate programming parser
EJS available for browsers as ES6 module
The simplest, most extendible schema class you will ever come across
A data loader for SPA (Single Page Applications)
Common properties for JS-KIT related web sites
Plugin to allow col-1 literate comments in a file
Global fetch for Single Page Applications
Best webdriver around using async/await, simplified down-to-earth API, easy to debug, 1:1 matching with the webdriver API. You will be testing in 20 minutes, not 20 hours
Serve ES6 modules ensuring node resolution via the node algorithm. Express middleware and full server
Scaffolding for lit applications
An example scaffold
A module to create full Json REST stores in minutes
A sane implementation of Redux
The simplest, most extendible schema class you will ever come across
A module to create flexible, powerful Error objects based on HTTP responses
MongoDB layer for simpledblayer
Hotplate SaaS development framework
Simple, generic, no fuss DB layer for NodeJS
A multi-purpose node app manager
Static web site generator
A simple implementation of declare() to have Javascript (single and multiple) inheritance in a very elegant, close-to-metal way
TingoDB layer for simpledblayer
A sane implementation of Redux
→ No suspicious destination, no remote-exec shape — 2 known-vendor host(s).
The most powerful client-side routing in the west
→ No suspicious destination, no remote-exec shape — 1 known-vendor host(s).