npm package discovery and stats viewer.

Discover Tips

  • General search

    [free text search, go nuts!]

  • Package details

    pkg:[package-name]

  • User packages

    @[username]

Sponsor

Optimize Toolset

I’ve always been into building performant and accessible sites, but lately I’ve been taking it extremely seriously. So much so that I’ve been building a tool to help me optimize and monitor the sites that I build to make sure that I’m making an attempt to offer the best experience to those who visit them. If you’re into performant, accessible and SEO friendly sites, you might like it too! You can check it out at Optimize Toolset.

About

Hi, 👋, I’m Ryan Hefner  and I built this site for me, and you! The goal of this site was to provide an easy way for me to check the stats on my npm packages, both for prioritizing issues and updates, and to give me a little kick in the pants to keep up on stuff.

As I was building it, I realized that I was actually using the tool to build the tool, and figured I might as well put this out there and hopefully others will find it to be a fast and useful way to search and browse npm packages as I have.

If you’re interested in other things I’m working on, follow me on Twitter or check out the open source projects I’ve been publishing on GitHub.

I am also working on a Twitter bot for this site to tweet the most popular, newest, random packages from npm. Please follow that account now and it will start sending out packages soon–ish.

Open Software & Tools

This site wouldn’t be possible without the immense generosity and tireless efforts from the people who make contributions to the world and share their work via open source initiatives. Thank you 🙏

© 2026 – Pkg Stats / Ryan Hefner

@trystarlight/cli

v0.8.1

Published

Connect a macOS user-owned Codex installation to Starlight.

Readme

Starlight CLI

The Starlight CLI connects your own Codex installation on macOS to your Starlight workspace. It stores the resource-bound pairing credential in macOS Keychain and can keep the driver available through a per-user LaunchAgent.

Requirements

  • macOS
  • Node.js 22.13 or newer
  • A local Codex installation signed in to your own subscription
  • A Starlight account

Linux and Windows are not supported in the initial release. Mutating commands fail explicitly on unsupported operating systems.

Install and connect

npm install --global @trystarlight/cli
starlight auth login

Open the returned verification URL, approve the connection in Starlight, then run:

starlight auth complete
starlight driver install --runtime codex
starlight doctor --json --strict

Pairing grants this device scoped authority for one Starlight resource and workspace. It does not transfer your Codex subscription to Starlight or give Starlight custody of it.

Commands

starlight auth login|complete|status
starlight auth logout [--local-only] [--json]
starlight driver install|start|stop|status|update|run
starlight doctor [--json] [--strict]
starlight version [--json]
starlight update [--json]
starlight uninstall [--revoke] [--json]

driver stop and uninstall preserve pairing by default. Use auth logout or uninstall --revoke to revoke the remote credential before clearing it locally.

Machine-readable commands emit one JSON object, or JSON Lines for driver run --json, on stdout. Human-facing errors use stderr. Exit codes are stable: 0 success, 1 failure, 2 attention required, 64 command usage, and 69 unsupported environment.

Recovery

  • Pairing expired or revoked: run starlight auth logout, then pair again.
  • Logout cannot revoke a stale credential from another workspace: run starlight auth logout --local-only to clear only this CLI's exact local Keychain pairing state, then run starlight auth login. This explicit recovery skips remote revocation and makes no network request. A still-valid remote credential may remain active until it is revoked in its original workspace or expires.
  • Driver offline after login or reboot: run starlight driver status --json, then starlight driver start.
  • Driver crashed: run starlight doctor --json --strict; the diagnostic contains a safe next command without credentials.
  • Upgrade: install the newer package through the same trusted npm channel, then run starlight driver install --runtime codex to refresh the LaunchAgent entry.
  • Clean removal: run starlight uninstall --revoke, then remove the global npm package.

Trust boundary

The CLI is a thin, user-owned driver. The Starlight service remains responsible for account authorization, workspace isolation, durable sessions and turns, approvals, spend controls, provider routing, validation, and recovery. The driver accepts versioned instructions and tool schemas from the authenticated Starlight service; it does not ship private application prompts or provider credentials.

See PROTOCOL.md for the compatibility contract and SECURITY.md for reporting and credential handling.