
Security News
vlt Launches "reproduce": A New Tool Challenging the Limits of Package Provenance
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
@herodevs/coulson
Advanced tools
This repository is a basic Schematic implementation that serves as a starting point to create and publish Schematics to NPM.
To test locally (dev in safemode
), install @angular-devkit/schematics-cli
globally and use the schematics
command line tool. That tool acts the same as the generate
command of the Angular CLI, but also has a debug mode.
npm run copy:generate
cd schematics/coulson
npm run schematics
npm run copy:generate
cd schematics/coulson
npm run build
npm pack
cp -r herodevs-coulson-0.0.*.tgz {{project_folder}}
cd {{project_folder}}
npm i --save-dev herodevs-coulson-0.0.*.tgz
ng g .\node_modules\@herodevs\coulson\src\collection.json:coulson
cd .\node_modules\@herodevs\coulson\src\files && npm i && cd ../../../../../
ng serve --prod
npm run coulson:generate
For this test, first you need publish the schematics (see below), after this create an angular project. You can copy one of the seed project for test more fast.
ng add @herodevs/coulson
npm run coulson:generate
npm run test
will run the unit tests, using Jasmine as a runner and test framework.
To publish, simply do:
npm run copy:generate
cd schematics/coulson
npm run build
npm publish
That's it!
FAQs
Coulson API
We found that @herodevs/coulson demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 5 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
Research
Security News
Socket researchers uncovered a malicious PyPI package exploiting Deezer’s API to enable coordinated music piracy through API abuse and C2 server control.
Research
The Socket Research Team discovered a malicious npm package, '@ton-wallet/create', stealing cryptocurrency wallet keys from developers and users in the TON ecosystem.