Research
Security News
Malicious npm Package Targets Solana Developers and Hijacks Funds
A malicious npm package targets Solana developers, rerouting funds in 2% of transactions to a hardcoded address.
github.com/kyoto-framework/kyoto/v2
Go library for creating fast, SSR-first frontend avoiding vanilla templating downsides.
Documentation • Quick start • Who uses? • Support us
Creating asynchronous and dynamic layout parts is a complex problem for larger projects using html/template
.
Library tries to simplify this process.
html/template
If you want to start straight from the example, use a starter project.
$ git clone https://github.com/kyoto-framework/start <project-name>
If you want to start from scratch, we have a minimal working example to start with.
Website: https://mybrokerone.com
The first version of the site was developed with Vue and suffered from large payload and low performance.
After discussion, it was decided to migrate to Go with a built-in html/template
due to existing libraries infrastructure inside of the project.
Despite the good performance result, the code was badly structured and it was very uncomfortable to work in existing paradigm.
On the basis of these problems, kyoto was born. Now, this library lies in the core of the platform.
Please tell us about your story! We would love to talk about your usage experience.
Any project support is appreciated! Providing a feedback, pull requests, new ideas, whatever. Also, donations and sponsoring will help us to keep high updates frequency. Just send us a quick email or a message on contacts provided above.
If you have an option to donate us with a crypto, we have some addresses.
Bitcoin: bc1qgxe4u799f8pdyzk65sqpq28xj0yc6g05ckhvkk
Ethereum: 0xEB2f24e830223bE081264e0c81fb5FD4DDD2B7B0
Also, we have a page on open collective for backers support.
Open Collective: https://opencollective.com/kyoto-framework
FAQs
Unknown package
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
A malicious npm package targets Solana developers, rerouting funds in 2% of transactions to a hardcoded address.
Security News
Research
Socket researchers have discovered malicious npm packages targeting crypto developers, stealing credentials and wallet data using spyware delivered through typosquats of popular cryptographic libraries.
Security News
Socket's package search now displays weekly downloads for npm packages, helping developers quickly assess popularity and make more informed decisions.