Research
Security News
Malicious npm Packages Inject SSH Backdoors via Typosquatted Libraries
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
Commnad line todo app.
npm i -g 2do-cli
Or if using Yarn:
yarn global add 2do-cli
Open up any repository that you want to use 2do-cli indside.
Then type:
2do
2do-cli will start, after that write :
init
And 2do-cli will generate a 2do.json file in you repo.
To work with 2do-cli you have add a file and then todos related to that.
Lets say you have a file named main.js
and you want to add some todos for this file, to do so (after inializing 2do-cli in your repo) you have to type:
add main.js 'Here is my first todo for main.js'
After a while you might know that you want to add another todo for same file, so just use same command like:
add main.js 'Here is my second todo for main.js '
Now if you want to see all todos of main.js
you simply write:
show main.js
and all todos of that file will appear.
So what if you want to know you have completed a todo or not. There is default status
field for every todo,
and it's value is set to undone
by default. If you want to change it so that you know your todo is done:
check main.js 4
This will set status of fourth todo of main.js to done
.
You can list all of files which have todos in current directory and select any one that you want, by typing :
list
You can remove a file, which removes all of it's todos too, or you can only remove a todo of a file, to do prior one you just write:
delete main.js
And if you want to remove only second todo of this file you go like:
delete main.js 2
Above command will remove second todo of main.js .
To get current version just type :
version
FAQs
2do inside your command line
The npm package 2do-cli receives a total of 11 weekly downloads. As such, 2do-cli popularity was classified as not popular.
We found that 2do-cli demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
Security News
MITRE's 2024 CWE Top 25 highlights critical software vulnerabilities like XSS, SQL Injection, and CSRF, reflecting shifts due to a refined ranking methodology.
Security News
In this segment of the Risky Business podcast, Feross Aboukhadijeh and Patrick Gray discuss the challenges of tracking malware discovered in open source softare.