npm package discovery and stats viewer.

Discover Tips

  • General search

    [free text search, go nuts!]

  • Package details

    pkg:[package-name]

  • User packages

    @[username]

Sponsor

Optimize Toolset

I’ve always been into building performant and accessible sites, but lately I’ve been taking it extremely seriously. So much so that I’ve been building a tool to help me optimize and monitor the sites that I build to make sure that I’m making an attempt to offer the best experience to those who visit them. If you’re into performant, accessible and SEO friendly sites, you might like it too! You can check it out at Optimize Toolset.

About

Hi, 👋, I’m Ryan Hefner  and I built this site for me, and you! The goal of this site was to provide an easy way for me to check the stats on my npm packages, both for prioritizing issues and updates, and to give me a little kick in the pants to keep up on stuff.

As I was building it, I realized that I was actually using the tool to build the tool, and figured I might as well put this out there and hopefully others will find it to be a fast and useful way to search and browse npm packages as I have.

If you’re interested in other things I’m working on, follow me on Twitter or check out the open source projects I’ve been publishing on GitHub.

I am also working on a Twitter bot for this site to tweet the most popular, newest, random packages from npm. Please follow that account now and it will start sending out packages soon–ish.

Open Software & Tools

This site wouldn’t be possible without the immense generosity and tireless efforts from the people who make contributions to the world and share their work via open source initiatives. Thank you 🙏

© 2026 – Pkg Stats / Ryan Hefner

@pactmark/cli

v0.2.0

Published

Safe Pactmark command-line interface and injectable host contract

Readme

@pactmark/cli

The safe, host-injected command-line interface for Pactmark. It provides the pactmark binary and a public runCli API for embedding the same commands in a project host.

Set PACTMARK_CLI_CONFIG to a trusted local ESM module whose default export implements PactmarkCliHost. The CLI never discovers database or provider adapters dynamically. doctor preserves the core runtime's readiness result and augments it with typed host probes; migrate delegates only to an injected MigrationManager.

pactmark --help
pactmark compile --json
pactmark doctor --production --json
pactmark replay run_123 --json
pactmark inspect run_123 --json
pactmark evidence export run_123 --format json

Output is telemetry-free. Human terminal output escapes control, ANSI, bidi, zero-width, and combining characters. JSON errors expose stable KAF_* codes, a remediation, and a documentation URL; raw causes, stacks, credentials, provider bodies, and environment values are never rendered.

compile is hostless: it reads AGENT.md, optional skills/<name>/skill.json, SKILL.md, resources, and optional .pactmark/capabilities.json. It rejects unsupported encodings, symlinks and path escapes, stale schemas, unresolved capabilities, and possible embedded secrets before atomically materializing .pactmark/generated/agent-manifest.json.

replay accepts only terminal runs. It reduces the finite stored event history and compares projection, event-chain, and artifact digests through read-only host ports. It never invokes the host's operate callback, a model, or a tool. Commands requiring orchestration beyond these concrete read-only or local paths use the authenticated host's operate callback. The host remains responsible for an interactive or authenticated R4/R5 decision flow and for operational authority on effect reconciliation or compensation; CLI flags and payloads do not create that authority. If a host omits the callback, the CLI fails with KAF_CLI_COMMAND_UNSUPPORTED; it never reports simulated success.