There is no harm done to the user's machine. What are you talking about? The malware as you call it is limited to the project folder and Claude itself specifically asks you if you trust the contents of a newly opened folder.
I still use Insomnia as I think it offers the better experience over Postman, but I wouldn't recommend it as it gets shifted more and more into a forced subscription model.
I have installed Hopscotch, but Insomnia still works so I never felt the need to switch - but I am ready to do so.
I wouldn't say that GitHub is not stable. I hope we will learn what the reason was, I hope at least Tom will get to know what it was and I am sure he will take this into consideration.
Of course I cannot speak for him. My understanding is that he is considering this, but his priority at the moment is to find out and solve the reason for his shadowban on GitHub. Maybe he will move to another platform (I think Codeberg was mentioned once or twice), but changing the platform will no doubt result in additional work that needs to be planned as he is doing this in his spare time. The GitHub situation needs to be solved first as he needs this account also for work as I understand it.
The creator's GitHub account is in limbo. He can see everything just normal, but for everyone else it's just a 404. GitHub support is informed but unresponsive.
There is a Matrix chat where the creator posts updates (although there is not much to update): KitchenOwl
There is no reason to believe that the latest version available on Docker Hub (0.7.7) is compromised in any way. If you want to play it safe use 0.7.6 (3 months old).
Almost all of them affect authenticated users. The only ones that allow unauthenticated users access are for old versions. So to be honest: I am not that much concerned.
Why would it break? There are tools out there that haven't seen updates in decades and they still work mostly the same as they did when they were released.
I use chore-helper for Home Assistant for that. I chose it because I like the "after x days" vs. the classic "every x days" approach. If I forgot to clean the shower for over a week there is no point to have a reminder the next day after I finally did it, but I want it to happen x days later no matter how long I dragged the previous task.
It hasn't received updates in ages though and can be quite slow and complicated to manage. I want to have a look in ChoreOps to replace it.
You are not the only one - you're still overreacting. The use of emojis does not make it AI generated. At least try to find some other hints before accusing a possible real person of something.
Let them think it. All those experts seeing AI everywhere can live under their rock and stay there. Recently an artist I personally know was criticized for using AI in his artwork - oil paintings each one signed by hand. Photographed in a way you can see it's real paint and a real place for the last 20 years. It annoys me more to see all these accusations being placed without having looked at it even one bit further.
This is something your domain provider has to offer to you. It is usually a paid service. Not all TLDs allow it though - so depending on your domain ending you might be out of luck. I don't know your intentions, but if you want to evade prosecution because of the traffic going through your TOR node this will not work. Even with whois privacy enabled your provider must disclose your identity to prosecution. Even if they weren't the A record (IP address) of your domain would link the domain to your server and would open another way to identify you through your hosting provider or ISP.
There is no harm done to the user's machine. What are you talking about? The malware as you call it is limited to the project folder and Claude itself specifically asks you if you trust the contents of a newly opened folder.