
Security News
vlt Launches "reproduce": A New Tool Challenging the Limits of Package Provenance
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
**Deck** is an application that enables content presenters maintain and display their markdown content on an enhanced visual presentation.
Deck is an application that enables content presenters maintain and display their markdown content on an enhanced visual presentation.
The Deck command format is the following:
deck <command> [command options]
The main Deck commands are:
npm install -g @deck/app
Initializing a new presentation project is made using the command:
deck init
This will create a basic presentation project.
deck install
Will install all package dependencies needed by the presentation project.
In the presentation material folder (where the deck.md
file is located) run the following command:
deck present [<material name>]
If no parameter provided it will present the deck.md
file located in the current folder.
After the presentation is ready a list of commands are displayed to the user:
e
, opens the current presentation with the default text editoro
, displays the presentationdeck edit [<material name>]
Opens the presentation material with the default editor registered in the system.
If no parameter provided it will edit the deck.md
file located in the current folder.
deck upstream [<material name>]
Creates a new branch on github, pushes the modified material and makes a pull request with the change.
If no parameter provided it will push the deck.md
file located in the current folder.
Sponsored by nearForm
FAQs
Deck is a markdown driven content presentation system
The npm package @deck/app receives a total of 1 weekly downloads. As such, @deck/app popularity was classified as not popular.
We found that @deck/app demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 2 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
Research
Security News
Socket researchers uncovered a malicious PyPI package exploiting Deezer’s API to enable coordinated music piracy through API abuse and C2 server control.
Research
The Socket Research Team discovered a malicious npm package, '@ton-wallet/create', stealing cryptocurrency wallet keys from developers and users in the TON ecosystem.