
Research
Malicious npm Packages Impersonate Flashbots SDKs, Targeting Ethereum Wallet Credentials
Four npm packages disguised as cryptographic tools steal developer credentials and send them to attacker-controlled Telegram infrastructure.
@ids-sandbox/ids-identity
Advanced tools
The Infor Design System is a set of use-case driven design practices, development tools, and support documentation to create a cohesive user experience across all Infor CloudSuite applications.
This repository contains the fundamentals of the Infor Design System, including design tokens, which are design metadata, and basic tools like icons. For more information, see design.infor.com.
To get started, :arrow_down:download the latest release :arrow_down: of our IDS Design Kit. In that package, you'll find icons, font files for Source Sans Pro, and our design tokens.
See our getting started page for more information.
Part of the Infor Design System is a package of different assets that create the Infor identity. This includes the design tokens, font files, and icons.
Install this into your project with:
npm install --save-dev ids-identity
Then look in node_modules/ids-identity
for the assets.
For designers and developers wanting to build these assets locally, see our developer guide.
--dry-run=false --no-increment --no-npm
. Before doing this, remove the tag/version from github so it gets re-created.Create a .env file and populate it. AWS keys are required only for local docker runs.
AWS_ACCESS_KEY_ID=
AWS_SECRET_ACCESS_KEY=
NPM_TOKEN=""
GITHUB_ACCESS_TOKEN=
DOCS_API_KEY=
DRY_RUN=
BRANCH=
Then make build
.
For questions and support, please open an new Issue.
FAQs
Infor Design System Design Assets
The npm package @ids-sandbox/ids-identity receives a total of 0 weekly downloads. As such, @ids-sandbox/ids-identity popularity was classified as not popular.
We found that @ids-sandbox/ids-identity demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Four npm packages disguised as cryptographic tools steal developer credentials and send them to attacker-controlled Telegram infrastructure.
Security News
Ruby maintainers from Bundler and rbenv teams are building rv to bring Python uv's speed and unified tooling approach to Ruby development.
Security News
Following last week’s supply chain attack, Nx published findings on the GitHub Actions exploit and moved npm publishing to Trusted Publishers.