npm package discovery and stats viewer.

Discover Tips

  • General search

    [free text search, go nuts!]

  • Package details

    pkg:[package-name]

  • User packages

    @[username]

Sponsor

Optimize Toolset

I’ve always been into building performant and accessible sites, but lately I’ve been taking it extremely seriously. So much so that I’ve been building a tool to help me optimize and monitor the sites that I build to make sure that I’m making an attempt to offer the best experience to those who visit them. If you’re into performant, accessible and SEO friendly sites, you might like it too! You can check it out at Optimize Toolset.

About

Hi, 👋, I’m Ryan Hefner  and I built this site for me, and you! The goal of this site was to provide an easy way for me to check the stats on my npm packages, both for prioritizing issues and updates, and to give me a little kick in the pants to keep up on stuff.

As I was building it, I realized that I was actually using the tool to build the tool, and figured I might as well put this out there and hopefully others will find it to be a fast and useful way to search and browse npm packages as I have.

If you’re interested in other things I’m working on, follow me on Twitter or check out the open source projects I’ve been publishing on GitHub.

I am also working on a Twitter bot for this site to tweet the most popular, newest, random packages from npm. Please follow that account now and it will start sending out packages soon–ish.

Open Software & Tools

This site wouldn’t be possible without the immense generosity and tireless efforts from the people who make contributions to the world and share their work via open source initiatives. Thank you 🙏

© 2026 – Pkg Stats / Ryan Hefner

@axpathcom/evidence-core

v0.1.0

Published

Open verifier of the Axpath evidence chain: canonical event forms, SHA-256 hash chain, RFC 6962-style Merkle trees, RFC 3161 seals, checkpoints and reasoning-disclosure bundles — pure and deterministic, with the normative spec and golden vectors included

Readme

@axpathcom/evidence-core

The verifier of the Axpath evidence chain — the open core that lets any third party recompute and check an Axpath ledger without trusting Axpath: canonical event forms, the SHA-256 hash chain, RFC 6962-style Merkle trees, RFC 3161 timestamp seals, publishable checkpoints, the reasoning-attestation commitment and its disclosure bundle, and the JSON-LD export.

Everything here is pure and deterministic — no network, no disk, no Date.now() in the evaluation paths. The normative specification and the executable golden vectors are published alongside the code under dist/spec/ (SPEC.md, golden-vectors.json): what is published is exactly what is tested.

The policy/enforcement engine (guardrails, org layer, policy snapshot, MCP manifest pinning, memory attestation) lives in a separate, private package — it is not part of this verifier.

Status: licensed Apache-2.0 under gate G4 (opened 2026-08-10, decision D3 — npm carries only this open verifier; the CLI ships through Axpath's own channel). First npm publication is pending only the registry step (npm login / scope). Provenance is deferred: it requires a public repository and this monorepo hosts the proprietary engine — it will come with a public source mirror.