
Research
Two Malicious Rust Crates Impersonate Popular Logger to Steal Wallet Keys
Socket uncovers malicious Rust crates impersonating fast_log to steal Solana and Ethereum wallet keys from source code.
@cashstar/cstar-stylelint
Advanced tools
If you want to create a Gulp task, there is an annotated example gulp.js file in this repo for reference (from the auditor app).
These rules are set up to run on your code before it compiles. If you run this on compiled code, you will see formatting errors.
Don't lint your 3rd party libraries. This linter is meant for use on code written internally at CashStar only.
Be mindful of your file structure so you can point the linter to the correct place to ignore 3rd party libraries, compiled code, etc.
You can check out the .stylelintrc.json in this repo for the current set of rules and cross-reference them to the official Stylelint rules page.
We are closely following our current CSS Style Guide for these rules.
FAQs
CashStar CSS Linting Rules for stylelint
We found that @cashstar/cstar-stylelint demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 3 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Socket uncovers malicious Rust crates impersonating fast_log to steal Solana and Ethereum wallet keys from source code.
Research
A malicious package uses a QR code as steganography in an innovative technique.
Research
/Security News
Socket identified 80 fake candidates targeting engineering roles, including suspected North Korean operators, exposing the new reality of hiring as a security function.