
Product
Rust Support Now in Beta
Socket's Rust support is moving to Beta: all users can scan Cargo projects and generate SBOMs, including Cargo.toml-only crates, with Rust-aware supply chain checks.
@comall/dingtalk-notice
Advanced tools
钉钉消息推送插件(搭配 Gitlab CI CD
使用), CI CD 完成以后在钉钉群中发布消息并@相关人员(CICD 发起者 以及 配置的测试人员)
需要在 Gitlab 对应项目下的 CI / CD Settings
> Variables
,进行以下配置
key | Value | description |
---|---|---|
CUSTOM_DD_ACCESS_TOKEN | xxxx | 钉钉自定义机器人 ACCESS_TOKEN |
CUSTOM_DD_SECRET | xxx | 钉钉自定义机器人 SECRET |
CUSTOM_DEFAULT_PHONE | 18888888888 | 默认通知手机号 |
CUSTOM_TESTER_PHONE | Xxxx | 测试人员手机号,多个 , 分隔开(18888888888,18888888889) |
test_preson_account | xxxx | 对应开发人员 gitlab 账号,用于在钉钉中艾特相关人员(因为钉钉中艾特功能需要手机号参数) |
FAQs
We found that @comall/dingtalk-notice demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 3 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Product
Socket's Rust support is moving to Beta: all users can scan Cargo projects and generate SBOMs, including Cargo.toml-only crates, with Rust-aware supply chain checks.
Product
Socket Fix 2.0 brings targeted CVE remediation, smarter upgrade planning, and broader ecosystem support to help developers get to zero alerts.
Security News
Socket CEO Feross Aboukhadijeh joins Risky Business Weekly to unpack recent npm phishing attacks, their limited impact, and the risks if attackers get smarter.