
Research
/Security News
OpenAPI React Query Codegen Compromised in Mini Shai-Hulud npm Supply Chain Attack
Ten malicious OpenAPI React Query Codegen versions were published to npm in the Mini Shai-Hulud attack, all with valid provenance.
@lumal/vite
Advanced tools
Lumal 的轻量 Vite 配置助手,提供组件 resolver、工作区源码/产物 alias 和可选 Devtools 接线。
import { createLumalAliases, createLumalComponentResolver } from '@lumal/vite'
const aliases = createLumalAliases({ workspaceRoot: process.cwd() })
const resolver = createLumalComponentResolver({ importStyle: true })
本包不提供全局 viewport 转换,也不强制安装自动导入或 Devtools 插件。
FAQs
Lumal Vite component resolver, workspace aliases and optional devtools helpers.
We found that @lumal/vite demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Research
/Security News
Ten malicious OpenAPI React Query Codegen versions were published to npm in the Mini Shai-Hulud attack, all with valid provenance.

Security News
Socket joins more than 100 technology, cybersecurity, and financial organizations calling for a global surge in cyber defense.

Product
Enterprise security teams can now detect malware, credential theft, suspicious network activity, and risky updates across Microsoft Edge extensions.