
Security News
Feross on the 10 Minutes or Less Podcast: Nobody Reads the Code
Socket CEO Feross Aboukhadijeh joins 10 Minutes or Less, a podcast by Ali Rohde, to discuss the recent surge in open source supply chain attacks.
@apr/werckerenvtools
Advanced tools
Tools to work with wercker environments
npm i -g @apr/werckerenvtools
To avoid writing the api token directly in the command line, it can be read from the environment variable WERCKERENVTOOLS_TOKEN.
Example:
werckerenvtools export [organization] [application] [pipeline] --token [token] --include-application false > ENVIRONMENT
will export the environment variables of the pipeline to file called ENVIRONMENT
Organization, application and pipeline must exist.
include-application is optional and defaults to false but will include application envvars if true
Example:
werckerenvtools import [organization] [application] [pipeline] --token [token] --overwrite true --file ENVIRONMENT
will import the environment variables of the update pipeline from file called ENVIRONMENT
Organization, application and pipeline must exist.
overwrite is optional and defaults to false but will overwrite existing keys
Example:
werckerenvtools sync [organization] [application] [src-pipeline] [dst-pipeline] --token [token]
will sync the environment variables of the src pipeline to the dst pipeline
Organization, application and pipelines must exist.
overwrite is optional and defaults to false but will overwrite existing keys
Example:
werckerenvtools trim [organization] [application] [pipeline] --token [token]
Trims all environment variable keys in the pipeline that also exists in application or organization
FAQs
Tools to work with environment variables in wercker
We found that @apr/werckerenvtools demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 6 open source maintainers collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
Socket CEO Feross Aboukhadijeh joins 10 Minutes or Less, a podcast by Ali Rohde, to discuss the recent surge in open source supply chain attacks.

Research
/Security News
Campaign of 108 extensions harvests identities, steals sessions, and adds backdoors to browsers, all tied to the same C2 infrastructure.

Security News
OpenAI rotated macOS signing certificates after a malicious Axios package reached its CI pipeline in a broader software supply chain attack.