
Security News
/Research
Wallet-Draining npm Package Impersonates Nodemailer to Hijack Crypto Transactions
Malicious npm package impersonates Nodemailer and drains wallets by hijacking crypto transactions across multiple blockchains.
@accosine/xanadu
Advanced tools
Frameworkless web components for media creation and publishing.
Available Scripts
command | description |
---|---|
npm run ok | Run ALL checks sequentially |
npm run dev | Run Vite in dev mode |
npm run test | Run all test steps sequentially |
npm run format | Format code |
npm run storybook | Run Storybook in dev mode |
npm run lint | Run all linting steps sequentially |
npm run typecheck | Typecheck all code |
npm run build | Run all build steps sequentially |
npm run coverage | Collect test coverage and convert to html page |
npm run build:components | Build all Web Components"vite build" |
npm run build:storybook | Build Storybook for deployment |
npm run dependencies:list-outdated | List all outdated dependencies |
npm run dependencies:update | Update outdated dependencies and install them |
npm run lint:code | Lint code in src/ and stories/ directories |
npm run lint:styles | Lint CSS styles |
npm run lint:slowtypes | Lint slow types for publishing to JSR registry |
npm run coverage:collect | Test and collect coverage |
npm run coverage:convert | Convert test coverage report to html |
npm run coverage:serve | Serve converted coverage report |
Samuel Taylor Coleridge
© Built with 🌹 on a 🛷 in 🏰
FAQs
Xanadu Web Components
The npm package @accosine/xanadu receives a total of 0 weekly downloads. As such, @accosine/xanadu popularity was classified as not popular.
We found that @accosine/xanadu demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 2 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
/Research
Malicious npm package impersonates Nodemailer and drains wallets by hijacking crypto transactions across multiple blockchains.
Security News
This episode explores the hard problem of reachability analysis, from static analysis limits to handling dynamic languages and massive dependency trees.
Security News
/Research
Malicious Nx npm versions stole secrets and wallet info using AI CLI tools; Socket’s AI scanner detected the supply chain attack and flagged the malware.