235 packages matching crewhaus

@crewhaus/eval-judge

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

LLM-as-judge grader with prompt-injection defense and structured tool-use output

618Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.

@crewhaus/tool-executor

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Execute a single tool: validate → permission-check → invoke → format result

843Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.

@crewhaus/chunker

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Document chunking — fixed / semantic (Intl.Segmenter) / markdown strategies

451Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.

@crewhaus/federation-discovery

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Federation peer lookup: DNS SRV + .well-known/crewhaus.json with TTL caching (Section 34)

951Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.

@crewhaus/egress-classifier

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Pillar-3 sink-side chokepoint — classify content leaving via external sinks (fetch / web / mcp / channel / federation / evm-tx) against the data-lineage carried in run-context

744Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.

@crewhaus/cost-tracker

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Per-run / per-tenant USD aggregation: subscribes to model_response events, emits cost_accrual TraceEvents

830Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.

@crewhaus/tool-bash

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Built-in Bash tool: spawns shell commands via Bun.spawn with a default 30s timeout

527Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.

@crewhaus/compaction-autocompact

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Model-summarize-then-replace conversation compaction

756Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.

@crewhaus/tool-orchestrator

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Partition tool_use blocks into concurrent batches and serial calls based on catalog metadata

751Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.

@crewhaus/memory-store

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

M4.2 — persistent cross-session memory store. File-backed JSONL with simple BM25-style text search. Per-spec scoped.

822Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.

@crewhaus/compaction-snip

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Pure middle-message removal with tool-use/result orphan defense

745Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.

@crewhaus/target-crew

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Codegen for the CRW target — emits a daemon + per-role agent files driven by crew-orchestrator (Section 22)

603Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.

@crewhaus/dataset-registry

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Split-aware dataset versioning: train/dev/test with hash-stable sample identifiers and split-leak prevention

541Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.

@crewhaus/target-managed

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Codegen for the MGD target — daemon.ts wiring gateway-server, policy-engine, tenancy, audit-log

596Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.

@crewhaus/target-voice

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Codegen for the VOICE target — emits a realtime daemon (Section 24 VOICE)

584Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.

@crewhaus/gateway-protocol

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

JSON-RPC wire protocol for the managed-daemon gateway — versioned envelope + Zod schemas

721Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.

@crewhaus/target-graph

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Codegen for the GRPH target shape — emits a graph-engine bundle with checkpoint-store wired in

560Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.

@crewhaus/rate-limiter

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Multi-dimensional token-bucket / leaky-bucket rate limiter (per-tenant, per-provider, per-tool)

752Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.

@crewhaus/skills-registry

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Lazy-loaded SKILL.md catalog with frontmatter parsing and a Skill(name) tool

989Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.

@crewhaus/secrets-manager

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Pluggable secrets backend with rotation + audit-log integration: env-var, file, vault

422Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.