![Maven Central Adds Sigstore Signature Validation](https://cdn.sanity.io/images/cgdhsj6q/production/7da3bc8a946cfb5df15d7fcf49767faedc72b483-1024x1024.webp?w=400&fit=max&auto=format)
Security News
Maven Central Adds Sigstore Signature Validation
Maven Central now validates Sigstore signatures, making it easier for developers to verify the provenance of Java packages.
@mocha/eslint-config-mocha
Advanced tools
ESLint config for mochajs projects
Does nothing remarkable with linting your tests! Intended for use by projects under the Mocha.js GitHub org.
As of this writing, this config is unused by any published project. Except this one, I guess.
Install with npm
$ npm i eslint eslint-config-standard eslint-plugin-import eslint-plugin-promise eslint-plugin-standard eslint-plugin-mocha-only eslint-config-mocha --save-dev
(About ESLint & peerDependencies
)
Assuming a JSON ESLint config, add the following to the root .eslintrc.json
:
{
"extends": "mocha"
}
If using ES6 modules, instead:
{
"extends": "mocha/es6"
}
In your test/.eslintrc.json
, try this:
{
"extends": "mocha/test"
}
Copyright (c) 2016 JS Foundation and contributors
Licensed Apache-2.0
FAQs
ESLint config for mochajs projects
The npm package @mocha/eslint-config-mocha receives a total of 0 weekly downloads. As such, @mocha/eslint-config-mocha popularity was classified as not popular.
We found that @mocha/eslint-config-mocha demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
Maven Central now validates Sigstore signatures, making it easier for developers to verify the provenance of Java packages.
Security News
CISOs are racing to adopt AI for cybersecurity, but hurdles in budgets and governance may leave some falling behind in the fight against cyber threats.
Research
Security News
Socket researchers uncovered a backdoored typosquat of BoltDB in the Go ecosystem, exploiting Go Module Proxy caching to persist undetected for years.