
Research
/Security News
Popular Tinycolor npm Package Compromised in Supply Chain Attack Affecting 40+ Packages
Malicious update to @ctrl/tinycolor on npm is part of a supply-chain attack hitting 40+ packages across maintainers
@jaxxstorm/pulumi-rke
Advanced tools
The RKE resource provider for Pulumi lets you create a Kubernetes cluster using RKE in your cloud programs. To use this package, please install the Pulumi CLI first.
This package is available in many languages in the standard packaging formats.
To use from JavaScript or TypeScript in Node.js, install using either npm
:
$ npm install @jaxxstorm/pulumi-rke
or yarn
:
$ yarn add @jaxxstorm/pulumi-rke
To use from Python, install using pip
:
$ pip install pulumi_rke
To use from Go, use go get
to grab the latest version of the library
$ go get github.com/jaxxstorm/pulumi-rke/sdk/go/...
To use from Dotnet, use dotnet add package
to install into your project. You must specify the version if it is a pre-release version.
$ dotnet add package Pulumi.Rke --version 0.2.0-preview
Coming Soon
FAQs
A Pulumi package for creating and managing rke cloud resources.
We found that @jaxxstorm/pulumi-rke demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
/Security News
Malicious update to @ctrl/tinycolor on npm is part of a supply-chain attack hitting 40+ packages across maintainers
Security News
pnpm's new minimumReleaseAge setting delays package updates to prevent supply chain attacks, with other tools like Taze and NCU following suit.
Security News
The Rust Security Response WG is warning of phishing emails from rustfoundation.dev targeting crates.io users.