Security News
pnpm 10.0.0 Blocks Lifecycle Scripts by Default
pnpm 10 blocks lifecycle scripts by default to improve security, addressing supply chain attack risks but sparking debate over compatibility and workflow changes.
@create-luna-app/expo
Advanced tools
🌘Luna is a React Native and Next.js boilerplate so your app can run on Android, IOS and Web concurrently.
⚠️ Please be sure your environment is set up correctly for React Native.
yarn web
Runs the app in the web in development mode.
Open http://localhost:3000 to view it in the browser.
The page will reload if you make edits.
You will also see any lint errors in the console.
yarn build
Builds the web app for production with Next.js.
yarn next-start
Runs the web app in production mode with Next.js.
Open http://localhost:3000 to view it in the browser.
Note: You have to run yarn build
first!
yarn start
Start Metro Bundler. After that, you can press "i" or "a" to run the app on iOS or Android simulator respectively.
yarn lint:all
(runs eslint, prettier, and tsc)yarn test:all
(runs jest)FAQs
🌘Luna is a React Native and Next.js boilerplate so your app can run on Android, IOS and Web concurrently.
The npm package @create-luna-app/expo receives a total of 6 weekly downloads. As such, @create-luna-app/expo popularity was classified as not popular.
We found that @create-luna-app/expo demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
pnpm 10 blocks lifecycle scripts by default to improve security, addressing supply chain attack risks but sparking debate over compatibility and workflow changes.
Product
Socket now supports uv.lock files to ensure consistent, secure dependency resolution for Python projects and enhance supply chain security.
Research
Security News
Socket researchers have discovered multiple malicious npm packages targeting Solana private keys, abusing Gmail to exfiltrate the data and drain Solana wallets.