Research
Security News
Quasar RAT Disguised as an npm Package for Detecting Vulnerabilities in Ethereum Smart Contracts
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
@fatso83/pomodone-monitor
Advanced tools
> Monitor Pomodone changes using Zapier RSS feeds and trigger Luxafor lights
Monitor Pomodone changes using Zapier RSS feeds and trigger Luxafor lights
You need a feed that corresponds to the expected format. To create this you need to set up a Zapier trigger for Pomodone that will add entries to the RSS when tasks are started and stopped.
Supply the Zapier feed URL as the first parameter and just let it run
pomodone-monitor https://zapier.com/engine/rss/172084/pomodoro-v1-test1
This will start and stop the Luxafor lights as you do your Pomodoros.
Pass export DEBUG="*"
to debug the app
See the example feed
Make the device writeable for everyone on your system to avoid needing sudo
.
echo 'SUBSYSTEM=="usb", ATTRS{idVendor}=="04d8", ATTRS{idProduct}=="f372", MODE="0666"' | sudo tee /etc/udev/rules.d/80-luxafor.rules
sudo udevadm control --reload-rules
FAQs
> Monitor Pomodone changes using Zapier RSS feeds and trigger Luxafor lights
The npm package @fatso83/pomodone-monitor receives a total of 0 weekly downloads. As such, @fatso83/pomodone-monitor popularity was classified as not popular.
We found that @fatso83/pomodone-monitor demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
Security News
Research
A supply chain attack on Rspack's npm packages injected cryptomining malware, potentially impacting thousands of developers.
Research
Security News
Socket researchers discovered a malware campaign on npm delivering the Skuld infostealer via typosquatted packages, exposing sensitive data.