
Security News
npm Adopts OIDC for Trusted Publishing in CI/CD Workflows
npm now supports Trusted Publishing with OIDC, enabling secure package publishing directly from CI/CD workflows without relying on long-lived tokens.
@plotly/webpack-dash-dynamic-import
Advanced tools
[1.3.0] - 2019-09-17
#923 Add one configuration --percy-assets
in pytest
to specify extra application assets path if needed.
#918 Add wait_for_element_by_id
and visit_and_snapshot
APIs in browser, add raw_command
option (with higher priority than the default waitress one) and optional start_timeout
argument to handle large applications within the process runner.
#903 Persistence: enable props edited by the user to persist across recreating the component or reloading the page. Components need to define three new props: persistence
, persisted_props
, and persistence_type
as described in the lead comment of src/persistence.js
. App developers then enable this behavior by, in the simplest case, setting persistence: true
on the component. First use case is table, see dash-table#566
dash-generate-components
on Windows.--remote
pytest argument which was not effective in the code, adding a new argument --remote-url
to support the selenium grid usage in the cloud.npm run build:local
and pip install in editable mode, i.e. pip install -e .
FAQs
Webpack Plugin for Dynamic Import in Dash
The npm package @plotly/webpack-dash-dynamic-import receives a total of 611 weekly downloads. As such, @plotly/webpack-dash-dynamic-import popularity was classified as not popular.
We found that @plotly/webpack-dash-dynamic-import demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 4 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
npm now supports Trusted Publishing with OIDC, enabling secure package publishing directly from CI/CD workflows without relying on long-lived tokens.
Research
/Security News
A RubyGems malware campaign used 60 malicious packages posing as automation tools to steal credentials from social media and marketing tool users.
Security News
The CNA Scorecard ranks CVE issuers by data completeness, revealing major gaps in patch info and software identifiers across thousands of vulnerabilities.