
Security News
Node.js Drops Bug Bounty Rewards After Funding Dries Up
Node.js has paused its bug bounty program after funding ended, removing payouts for vulnerability reports but keeping its security process unchanged.
@aomao/plugin-backcolor
Advanced tools
背景颜色插件
$ yarn add @aomao/plugin-backcolor
添加到引擎
import Engine, { EngineInterface } from '@aomao/engine';
import Backcolor from '@aomao/plugin-backcolor';
new Engine(...,{ plugins:[Backcolor] })
默认无快捷键
//快捷键,key 组合键,args,执行参数,[color,defaultColor?] , color 必须,defaultColor 可选
hotkey?:{key:string,args:Array<string>};//默认无
//使用配置
new Engine(...,{
config:{
"backcolor":{
//修改快捷键
hotkey:{
key:"mod+b",
args:["#000000","#ffffff"]
}
}
}
})
//color:更改的背景颜色,defaultColor:保持的默认背景色,在没有传入 defaultColor 或者 color 与 defaultColor 值不同时执行背景色修改
engine.command.execute('backcolor', color, defaultColor);
//使用 command 执行查询当前状态,返回 Array<string> | undefined,当前光标所在处背景色值集合
engine.command.queryState('backcolor');
FAQs
We found that @aomao/plugin-backcolor demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
Node.js has paused its bug bounty program after funding ended, removing payouts for vulnerability reports but keeping its security process unchanged.

Security News
The Axios compromise shows how time-dependent dependency resolution makes exposure harder to detect and contain.

Research
A supply chain attack on Axios introduced a malicious dependency, plain-crypto-js@4.2.1, published minutes earlier and absent from the project’s GitHub releases.