
Security News
OWASP 2025 Top 10 Adds Software Supply Chain Failures, Ranked Top Community Concern
OWASP’s 2025 Top 10 introduces Software Supply Chain Failures as a new category, reflecting rising concern over dependency and build system risks.
@oclif/plugin-help
Advanced tools
A CLI command to invoke the standard help functionality from oclif/core.
oclif help [COMMAND]Display help for oclif.
USAGE
$ oclif help [COMMAND...] [-n]
ARGUMENTS
[COMMAND...] Command to show help for.
FLAGS
-n, --nested-commands Include all nested commands in the output.
DESCRIPTION
Display help for oclif.
See code: src/commands/help.ts
Yargs is a powerful npm package that helps you build interactive command line tools, by parsing arguments and generating an elegant user interface. It provides features similar to @oclif/plugin-help, such as automatic help generation and command-specific help, but it is a more general-purpose CLI framework.
Commander is another npm package for node.js designed to make it easy to write full-featured command line applications. It also automatically generates help information for commands. Commander is less opinionated than oclif and does not enforce a specific project structure.
Caporal is a full-featured framework for building command line applications (CLI) with Node.js, which includes a powerful help system. It provides a similar level of abstraction as oclif and includes automatic help generation, but with a different API design and feature set.
FAQs
Standard help for oclif.
The npm package @oclif/plugin-help receives a total of 1,877,238 weekly downloads. As such, @oclif/plugin-help popularity was classified as popular.
We found that @oclif/plugin-help demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 2 open source maintainers collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
OWASP’s 2025 Top 10 introduces Software Supply Chain Failures as a new category, reflecting rising concern over dependency and build system risks.

Research
/Security News
Socket researchers discovered nine malicious NuGet packages that use time-delayed payloads to crash applications and corrupt industrial control systems.

Security News
Socket CTO Ahmad Nassri discusses why supply chain attacks now target developer machines and what AI means for the future of enterprise security.