
Research
/Security News
Weaponizing Discord for Command and Control Across npm, PyPI, and RubyGems.org
Socket researchers uncover how threat actors weaponize Discord across the npm, PyPI, and RubyGems ecosystems to exfiltrate sensitive data.
@fnndsc/chrisstoreapi
Advanced tools
[](https://app.travis-ci.com/FNNDSC/fnndsc)
JavaScript6 client for the ChRIS Store REST API.
npm i @fnndsc/chrisstoreapi
If you have a ChRIS store server up and running (eg. as explained below) then you can test the API in your Javascript code.
For more information visit the API documentation
These preconditions are only necessary to be able to test the client against an actual instance of a ChRIS Store server both during development and for the automated tests.
Docker 18.06.0+
Docker Compose 1.27.0+
Ubuntu 18.04+ and MAC OS X 10.14+
docker
groupOpen a terminal and run the following commands in any working directory:
$> git clone https://github.com/FNNDSC/ChRIS_store.git
$> cd ChRIS_store
$> ./make.sh up
Check that all the services are up:
$> docker-compose -f docker-compose_dev.yml ps
Using curl:
curl http://localhost:8010/api/v1/
Using HTTPie REST API client:
http http://localhost:8010/api/v1/
You can later remove all the backend containers and release storage volumes with:
$ cd ChRIS_store
$ ./make.sh down
Open a terminal in the directory of this README file
Install dependencies
$> yarn install
Start tests in watch mode (used for developing)
$> yarn start
Start test in single run mode (used by Travis CI
)
$> yarn test
Compile library to standalone bundle
$> yarn build
Generate source code documentation
$> yarn docs
FAQs
[](https://app.travis-ci.com/FNNDSC/fnndsc)
The npm package @fnndsc/chrisstoreapi receives a total of 51 weekly downloads. As such, @fnndsc/chrisstoreapi popularity was classified as not popular.
We found that @fnndsc/chrisstoreapi demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 2 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
/Security News
Socket researchers uncover how threat actors weaponize Discord across the npm, PyPI, and RubyGems ecosystems to exfiltrate sensitive data.
Security News
Socket now integrates with Bun 1.3’s Security Scanner API to block risky packages at install time and enforce your organization’s policies in local dev and CI.
Research
The Socket Threat Research Team is tracking weekly intrusions into the npm registry that follow a repeatable adversarial playbook used by North Korean state-sponsored actors.