
Research
Security News
Lazarus Strikes npm Again with New Wave of Malicious Packages
The Socket Research Team has discovered six new malicious npm packages linked to North Korea’s Lazarus Group, designed to steal credentials and deploy backdoors.
@6degrees/source-code-spitter
Advanced tools
A command-line tool to extract and organize source code snippets from projects, enabling easy sharing and collaboration.
SourceCodeSpitter is a command-line tool that generates a single dump file containing all the source code files within a directory, excluding files specified in .gitignore
and .spitignore
. This tool is useful for quickly collecting source code snippets for sharing or documentation purposes.
.gitignore
and .spitignore
.npm install -g source-code-spitter
source-code-spitter [directory]
Replace [directory]
with the path to the directory you want to generate the source code dump for. If no directory is provided, it will default to the current working directory.
The tool will generate a source_code_dump.txt
file in the same directory with all the source code snippets.
Generate a source code dump for the current working directory:
source-code-spitter
Generate a source code dump for a specific directory:
source-code-spitter /path/to/directory
Contributions are welcome! Feel free to open an issue or submit a pull request for any improvements or additional features you'd like to see.
This project is licensed under the MIT License.
FAQs
A command-line tool to extract and organize source code snippets from projects, enabling easy sharing and collaboration.
The npm package @6degrees/source-code-spitter receives a total of 2 weekly downloads. As such, @6degrees/source-code-spitter popularity was classified as not popular.
We found that @6degrees/source-code-spitter demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
The Socket Research Team has discovered six new malicious npm packages linked to North Korea’s Lazarus Group, designed to steal credentials and deploy backdoors.
Security News
Socket CEO Feross Aboukhadijeh discusses the open web, open source security, and how Socket tackles software supply chain attacks on The Pair Program podcast.
Security News
Opengrep continues building momentum with the alpha release of its Playground tool, demonstrating the project's rapid evolution just two months after its initial launch.