
Research
/Security News
16 Malicious Firefox Extensions Steal Cryptocurrency Wallet Credentials
Socket found 16 malicious Firefox extensions designed to steal crypto wallet recovery phrases and private keys using cloned Rabby and OKX interfaces.
@formfeed/testing
Advanced tools
Vitest and Jest matchers for Formfeed templates: render without errors, use only known variables, snapshots.
Vitest and Jest matchers for Formfeed templates kept in your repository. The offline matchers render with the same engine the API uses, so they need no account.
npm install -D @formfeed/testing
Register the matchers once: add @formfeed/testing/vitest to Vitest's setupFiles, or
@formfeed/testing/jest to Jest's setupFilesAfterEnv.
import { loadTemplate } from '@formfeed/testing';
import invoice from '../templates/invoice-de/data/default.json';
const tpl = await loadTemplate('templates/invoice-de');
test('compiles and uses only known variables', async () => {
await expect(tpl).toRenderWithoutErrors(invoice);
await expect(tpl).toUseOnlyKnownVariables(invoice);
});
test('html snapshot', async () => {
expect(await tpl.render(invoice)).toMatchSnapshot();
});
test('two pages for forty lines', async () => {
await expect(tpl).toHavePageCount(2, invoice); // a true render through the API
});
| Matcher | Needs the API | Checks |
|---|---|---|
toRenderWithoutErrors(data) | no | Compiles and renders without engine errors |
toUseOnlyKnownVariables(data) | no | Every variable the template reads exists in the data |
toContainText(text, data) | no | The rendered HTML contains the text |
toHavePageCount(n, data) | yes | Page count of the true render |
API-backed matchers read FORMFEED_API_KEY (a test key is enough) and skip with a warning without
one; set FORMFEED_REQUIRE_API=1 in CI to make them fail instead. For another test runner, pass
matchers to its expect.extend.
MIT
FAQs
Vitest and Jest matchers for Formfeed templates: render without errors, use only known variables, snapshots.
The npm package @formfeed/testing receives a total of 477 weekly downloads. As such, @formfeed/testing popularity was classified as not popular.
We found that @formfeed/testing demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Research
/Security News
Socket found 16 malicious Firefox extensions designed to steal crypto wallet recovery phrases and private keys using cloned Rabby and OKX interfaces.

Product
Socket now scans VS Code extensions, giving teams early detection of risky behaviors, hidden capabilities, and supply chain threats in developer tools.

Research
/Security News
Socket uncovered two malicious VS Code themes in a GlassWorm-linked cluster with thousands of installs across VS Code Marketplace and Open VSX.