
Security News
Re-Enabled GitHub Actions Expose Thousands of Repositories to Mini Shai-Hulud
Two compromised GitHub Actions were re-enabled with malicious tags intact, exposing thousands of downstream repositories to Mini Shai-Hulud.
@config-plugins/react-native-siri-shortcut
Advanced tools
Config plugin for react-native-siri-shortcut package
Expo Config Plugin to auto-configure react-native-siri-shortcut when the native code is generated (npx expo prebuild).
Ensure you use versions that work together!
expo | react-native-siri-shortcut | @config-plugins/react-native-siri-shortcut |
|---|---|---|
| 56.0.0 | 3.2.4 | 13.0.0 |
| 55.0.0 | 3.2.4 | 12.0.0 |
| 54.0.0 | 3.2.4 | 11.0.0 |
| 53.0.0 | 3.2.4 | 10.0.0 |
| 52.0.0 | 3.2.4 | 8.0.0 |
| 51.0.0 | 3.2.4 | 7.0.0 |
| 50.0.0 | 3.2.4 | 6.0.0 |
| 49.0.0 | 3.2.3 | 5.0.0 |
| 48.0.0 | 3.2.2 | 4.0.0 |
This package cannot be used in the "Expo Go" app because it requires custom native code.
First install the package with yarn, npm, or npx expo install.
npx expo install react-native-siri-shortcut @config-plugins/react-native-siri-shortcut
After installing this npm package, add the config plugin to the plugins array of your app.json or app.config.js:
{
"plugins": ["@config-plugins/react-native-siri-shortcut"]
}
Next, rebuild your app as described in the "Adding custom native code" guide.
When working with Siri Shortcuts, you need to define their identifiers on the Xcode project. To achieve the same result using this plugin, just pass an array of strings with the identifiers of your shortcuts, and they will be added automatically during the build cycle:
{
"plugins": [
[
"@config-plugins/react-native-siri-shortcut",
["com.example.InitiateWorkout", "com.example.FinishWorkout"]
]
]
}
FAQs
Config plugin for react-native-siri-shortcut package
The npm package @config-plugins/react-native-siri-shortcut receives a total of 200 weekly downloads. As such, @config-plugins/react-native-siri-shortcut popularity was classified as not popular.
We found that @config-plugins/react-native-siri-shortcut demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 13 open source maintainers collaborating on the project.

Security News
Two compromised GitHub Actions were re-enabled with malicious tags intact, exposing thousands of downstream repositories to Mini Shai-Hulud.

Research
/Security News
A malicious Firefox extension fetches its payload after installation to evade detection, steal Google session cookies, and automate account takeover.

Research
/Security News
The compromise affects MemTensor's MemOS, an open source memory framework for large language models (LLMs) and AI agents. Both npm package @memtensor/memos-cloud-openclaw-plugin and the PyPI package MemoryOS are compromised. They drop cross-platform Go binaries that exfiltrate developer secrets.