![Maven Central Adds Sigstore Signature Validation](https://cdn.sanity.io/images/cgdhsj6q/production/7da3bc8a946cfb5df15d7fcf49767faedc72b483-1024x1024.webp?w=400&fit=max&auto=format)
Security News
Maven Central Adds Sigstore Signature Validation
Maven Central now validates Sigstore signatures, making it easier for developers to verify the provenance of Java packages.
@boxed/warlock
Advanced tools
Battle-hardened distributed locking using redis.
v0.10
v2.6.12
or above. If you're running a Redis version from v2.6.0
to v2.6.11
inclusive use v0.0.7
of this module.npm install node-redis-warlock
var Warlock = require('node-redis-warlock');
var redis = require('redis');
// Establish a redis client and pass it to warlock
var redis = redis.createClient();
var warlock = Warlock(redis);
// Set a lock
var key = 'test-lock';
var ttl = 10000; // Lifetime of the lock
warlock.lock(key, ttl, function(err, unlock){
if (err) {
// Something went wrong and we weren't able to set a lock
return;
}
if (typeof unlock === 'function') {
// If the lock is set successfully by this process, an unlock function is passed to our callback.
// Do the work that required lock protection, and then unlock() when finished...
//
// do stuff...
//
unlock();
} else {
// Otherwise, the lock was not established by us so we must decide what to do
// Perhaps wait a bit & retry...
}
});
// set a lock optimistically
var key = 'opt-lock';
var ttl = 10000;
var maxAttempts = 4; // Max number of times to try setting the lock before erroring
var wait = 1000; // Time to wait before another attempt if lock already in place
warlock.optimistic(key, ttl, maxAttempts, wait, function(err, unlock) {});
FAQs
Battle-hardened distributed locking using redis
The npm package @boxed/warlock receives a total of 0 weekly downloads. As such, @boxed/warlock popularity was classified as not popular.
We found that @boxed/warlock demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 41 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
Maven Central now validates Sigstore signatures, making it easier for developers to verify the provenance of Java packages.
Security News
CISOs are racing to adopt AI for cybersecurity, but hurdles in budgets and governance may leave some falling behind in the fight against cyber threats.
Research
Security News
Socket researchers uncovered a backdoored typosquat of BoltDB in the Go ecosystem, exploiting Go Module Proxy caching to persist undetected for years.