Research
Security News
Quasar RAT Disguised as an npm Package for Detecting Vulnerabilities in Ethereum Smart Contracts
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
@andrewosh/tracing-framework
Advanced tools
Web Tracing Framework instrumentation and analysis library.
The Web Tracing Framework is a set of libraries, tools, and visualizers for the tracing and investigation of complex web applications. You spend a small amount of time instrumenting your code and it helps you discover performance problems, track regressions, and build buttery-smooth 60fps web apps.
This is still very much a work in progress, and not designed to work for all applications. If you find issues when using it with your application please contribute fixes!
For documentation, tutorials, etc see the main Web Tracing Framework website.
For a list of known issues see KNOWN_ISSUES or the Github issues list.
See building for instructions and testing for information on running the various tests.
Just want the extension as fast as possible?
umask 0022
git clone https://github.com/google/tracing-framework.git
cd tracing-framework/
./scripts/setup.sh # or setup.bat on Windows
source wtfrc && deployext
# At chrome://extensions load unpacked extension from
# build-bin/wtf-injector-chrome
If you pull new changes, just redeploy:
git pull && git submodule update
deployext
# Reload from chrome://extensions
For more information and other build options, see building.
All code except dependencies under third_party/ is licensed under the permissive BSD license. Feel free to fork/rip/etc and use as you wish!
Have a fix or feature? Submit a pull request - we love them! Note that we do keep to the style_guide, so please check it out first!
As this is a Google project, you must first e-sign the Google Contributor License Agreement before we can accept any code. It takes only a second and basically just says you won't sue us or claim copyright of your submitted code.
FAQs
Web Tracing Framework instrumentation and analysis library.
The npm package @andrewosh/tracing-framework receives a total of 3 weekly downloads. As such, @andrewosh/tracing-framework popularity was classified as not popular.
We found that @andrewosh/tracing-framework demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
Security News
Research
A supply chain attack on Rspack's npm packages injected cryptomining malware, potentially impacting thousands of developers.
Research
Security News
Socket researchers discovered a malware campaign on npm delivering the Skuld infostealer via typosquatted packages, exposing sensitive data.