
Security News
Axios Supply Chain Attack Reaches OpenAI macOS Signing Pipeline, Forces Certificate Rotation
OpenAI rotated macOS signing certificates after a malicious Axios package reached its CI pipeline in a broader software supply chain attack.
@javascriptcommon/react-native-track-player
Advanced tools
A fully fledged audio module created for music apps
Please note this is a personal fork of RNTP for APM's development. Its forked out of upstream because RNTP unfortunately was on a development hiatus and the community has been quiet for a very long time, while the entire react native community 1,2 does NOT have anything better for audio playback. Many of the features APM uses, such as crossfade and Android Auto capabilities, were NOT merged upstream, unlikely to be merged in the foreseeable future, and won't be seen elsewhere either.
Functionalities used by APM passes the play store review.
This fork and APM proudly remains open-source and APM is published under GPLv3. As this fork is specifically developed for APM, contributions are welcome but changes modifying any APM features will NOT be accepted. For feature usages it's encouraged to look at the example app and APM. For library usages it's recommend to FORK yourself and modify any APM specific features and resources as needed.
FAQs
A fully fledged audio module created for music apps
We found that @javascriptcommon/react-native-track-player demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 5 open source maintainers collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
OpenAI rotated macOS signing certificates after a malicious Axios package reached its CI pipeline in a broader software supply chain attack.

Security News
Open source is under attack because of how much value it creates. It has been the foundation of every major software innovation for the last three decades. This is not the time to walk away from it.

Security News
Socket CEO Feross Aboukhadijeh breaks down how North Korea hijacked Axios and what it means for the future of software supply chain security.