
Research
Security News
Malicious npm Packages Use Telegram to Exfiltrate BullX Credentials
Socket uncovers an npm Trojan stealing crypto wallets and BullX credentials via obfuscated code and Telegram exfiltration.
@amplitude/experiment-core
Advanced tools
Amplitude Experiment evaluation JavaScript implementation.
@amplitude/experiment-core is a JavaScript library that allows developers to integrate Amplitude's experimentation and feature flagging capabilities into their applications. It provides tools to manage and evaluate experiments, enabling data-driven decision-making for product features.
Initialize the Experiment Client
This feature allows you to initialize the Experiment Client with your API key, which is necessary to interact with Amplitude's experimentation services.
const { ExperimentClient } = require('@amplitude/experiment-core');
const client = new ExperimentClient('YOUR_API_KEY');
Fetch Variants
Fetches the variants for a given user. This is useful for determining which variant of an experiment a user should see.
client.fetch({ user_id: 'user123' }).then(variants => {
console.log(variants);
});
Track Exposure
Tracks the exposure of a user to a specific variant. This is important for measuring the impact of different variants in your experiments.
client.track({ user_id: 'user123', variant: 'variantA' });
LaunchDarkly is a feature management platform that provides feature flagging and experimentation capabilities. It allows you to control feature rollouts and run experiments, similar to @amplitude/experiment-core.
Split.io is a feature experimentation platform that offers feature flagging and A/B testing capabilities. It provides tools to manage and evaluate experiments, similar to @amplitude/experiment-core.
FAQs
Amplitude Experiment evaluation JavaScript implementation.
The npm package @amplitude/experiment-core receives a total of 345,540 weekly downloads. As such, @amplitude/experiment-core popularity was classified as popular.
We found that @amplitude/experiment-core demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 21 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket uncovers an npm Trojan stealing crypto wallets and BullX credentials via obfuscated code and Telegram exfiltration.
Research
Security News
Malicious npm packages posing as developer tools target macOS Cursor IDE users, stealing credentials and modifying files to gain persistent backdoor access.
Security News
AI-generated slop reports are making bug bounty triage harder, wasting maintainer time, and straining trust in vulnerability disclosure programs.