
Research
Malicious npm Packages Impersonate Flashbots SDKs, Targeting Ethereum Wallet Credentials
Four npm packages disguised as cryptographic tools steal developer credentials and send them to attacker-controlled Telegram infrastructure.
@gooddata/test-storybook
Advanced tools
Visual regression testing for Storybook with automatically found test scenarios
Note: Run screenshots tests only on CI to ensure the same environment (platform, browser, display pixel density, etc.)
stories/
folder both in *.jsx
or *.tsx
yarn add --dev @gooddata/test-storybook
"test-storybook": "test-storybook"
into "scripts"
section in your package.json
.gitignore
file:
test-storybook/
test-storybook/
folderimport { screenshotWrap } from '@gooddata/test-storybook';
in your stories and wrap elements that you want to test in the function. -r
parameter, i.e. yarn test-storybook -r
. These will be discarded later and replaced with CI outputs.yarn test-storybook
from the root of your repository in which you want to test Storybook.extended test - storybook
.
The link to CI html report appears in GitHub PR commenthttps://ci.intgdc.com/job/.../123/artifact/test-storybook/tests/
stories/__screenshots__/
folder with new oneFor some scenarios you may need to add specific backstopjs options. All advanced options are available.
Add this section to packages.json
:
"test-storybook": {
"<section name>": {
"<scenario name>": {
"delay": 1000,
"removeSelectors": ".removeRandomValueElement",
"hoverSelector": ".hoverOverThisElementBeforeScreenshot"
}
}
}
Install Node.js (node 12.16.1, npm v6.13.4) and Yarn 1.22.4.
Install dependencies:
yarn install --frozen-lockfile
Use CI job to release the library.
yarn test
yarn validate
FAQs
Visual regression testing for Storybook
The npm package @gooddata/test-storybook receives a total of 52 weekly downloads. As such, @gooddata/test-storybook popularity was classified as not popular.
We found that @gooddata/test-storybook demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 58 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Four npm packages disguised as cryptographic tools steal developer credentials and send them to attacker-controlled Telegram infrastructure.
Security News
Ruby maintainers from Bundler and rbenv teams are building rv to bring Python uv's speed and unified tooling approach to Ruby development.
Security News
Following last week’s supply chain attack, Nx published findings on the GitHub Actions exploit and moved npm publishing to Trusted Publishers.