235 packages matching crewhaus

@crewhaus/idempotency-keys

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Idempotency-key dedup store for the BATCH consumer (Section 23 BATCH)

357Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.

@crewhaus/runtime-core

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Minimal runtime imported by generated harness bundles

719Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.

@crewhaus/audit-log

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Per-tenant hash-chained JSONL audit trail for the managed-daemon target

808Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.

@crewhaus/grader-continuity

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

v0.3.0 memory-release eval layer (§7.3) — deterministic continuity graders computed from a sample's session artifacts: re-ask rate, REQ retention, proof honesty (claimed vs proven), pickup success, cost per proven outcome

509Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.

@crewhaus/prompt-optimizer

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

DSPy-style automated prompt tuning. Search over candidate prompt mutations using eval-runner as the fitness function.

453Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.

@crewhaus/tool-fs

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Built-in filesystem tools (Read, Write, Edit, Glob, Grep) sandboxed to process.cwd()

534Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.

@crewhaus/plugin-sdk

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Plugin SDK v2 — public typed surface for third-party tools / channels / models / graders / target backends, with manifest validation and Ed25519 signature verification (Section 41)

458Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.

@crewhaus/studio-server

v0.1.5 · 2 months ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Bun.serve daemon — spec CRUD, run inspection (SSE), eval-result inspection, plugin discovery (Section 26 Studio)

6Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.1.5 (the latest release), from the OSV.dev database.

@crewhaus/tool-retrieve

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Retrieve(query, k?, filter?) tool — composes embedder + vector-store

392Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.

@crewhaus/durable-state

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Pluggable dedup + budget stores (audit follow-up R3) — in-memory defaults, bun:sqlite cross-process backend

393Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.

@crewhaus/spec-patch

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Pillar-2 patch infrastructure — apply a SpecPatch to a YAML source preserving comments and key order via the yaml CST. Drives the active eval optimizer's spec-level mutation loop.

395Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.

@crewhaus/crew-orchestrator

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Role-based dispatcher for the CRW shape — runs runChatLoop per role, threads handoffs + A2A messages (Section 22)

421Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.

@crewhaus/contract-compiler

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Track G / §58 — two-pass contract compilation (completeness + scope/ambiguity). Source: Meta-Engineering Harnesses (arxiv 2605.25665, §4.2).

300Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.

@crewhaus/plugin-registry

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Plugin discovery + version pinning + signature verification + capability declaration (Section 42)

382Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.

@crewhaus/template-registry

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Backend-agnostic spec-template registry: git/huggingface/npm/local backends + TTL cache + sigstore-style signature verification (Section 40)

381Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.

@crewhaus/regression-runner

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Diff-based pass/fail flip detection between two eval-runner outputs

346Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.

@crewhaus/migration-engine

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

IR version migrations: register up/down chains; migrate(spec, fromVersion, toVersion) walks the chain

366Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.

@crewhaus/agent-handoff

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Handoff(targetRole, reason, context?) tool — explicit baton-pass between roles in a crew (Section 22)

434Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.

@crewhaus/specialization-registry

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Track G / §58 — file-backed registry of domain specializations (payments, booking, auth) that inject invariants into contract compilation. Source: Meta-Engineering Harnesses (arxiv 2605.25665, §4.4).

333Downloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.

@crewhaus/tool-permission-matcher

v0.5.4 · 9 days ago

100
0-100 score computed by this site from verifiable signals only: known OSV.dev advisories affecting this exact version, how recently it was published, and the repository's OpenSSF Scorecard.

Pattern matchers for permission rules (Bash(git *), Read, Write(**/src/**))

1.0KDownloads across all versions in the last 7 days, from the official npm downloads API.Apache-2.0License declared in the package manifest.

No known vulnerabilities

Known vulnerabilities affecting v0.5.4 (the latest release), from the OSV.dev database.