
Security News
The Code You Didn't Write Is Still Yours to Defend
AI agents are pulling packages into environments no scanner is watching, creating exposure before security teams can see it.
@heisea/fetch
Advanced tools
Using yarn
yarn add @heisea/fetch
import { initFetch, plus } from '@heisea/fetch';
// 创建createFetch函数,参数为axios的配置,具体请参考axios。其中errTipFn为错误提示语的调用函数
// 在response.code为非0的情况下库会调用errTipFn方法,这里的Message.error则为elementui的风格,
// 可以根据ui框架定义不同的风格
const createFetch = initFetch({
baseURL: Config.baseUrl,
errTipFn: Message.error
});
// plus为针对全量定制的http header的中间件,如果不在全量版使用无需引入plus
/**
* Config为全量版的配置文件
* MODE为全量版环境变量即process.env.MODE的值
* portalMessageSend用于在一包中同基座进行通信的库
*/
const fetch = createFetch([
plus(Config, MODE, portalMessageSend),
]);
export default fetch;
FAQs
公共fetch请求库
The npm package @heisea/fetch receives a total of 21 weekly downloads. As such, @heisea/fetch popularity was classified as not popular.
We found that @heisea/fetch demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 5 open source maintainers collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
AI agents are pulling packages into environments no scanner is watching, creating exposure before security teams can see it.

Security News
GitHub Actions checkout now blocks risky pull_request_target checkouts by default to help prevent pwn request supply chain attacks.

Product
Socket now supports Custom Roles and Repository Access Permissions so organizations can control who can access specific repositories and actions.