
Security News
Package Maintainers Call for Improvements to GitHub’s New npm Security Plan
Maintainers back GitHub’s npm security overhaul but raise concerns about CI/CD workflows, enterprise support, and token management.
@rosen-bridge/observation-extractor
Advanced tools
Data extractors are modules that are integrated within a scanner. They drive the required information from the scanned blocks and store them in their own database. The observation extractor is designed to fulfill a watcher's main task: observing user payments in source networks. The bridge payment transaction has its own structure, and the observation extractor searches for this pattern occurrence in source chains and stores all needed information for a watcher commitment creation and revealment.
This module is used within the Scanner project. The address scanner is currently used in the Watcher service to drive the valid source chain observations.
This project is written in node-js using Esnext module and typeorm database. Extractors are not standalone projects and should be used as scanner modules. You can easily install it using npm with the command:
npm install @rosen-bridge/observation-extractor
Alternatively, you can build and use it manually by cloning the project and running:
npm install
npm run build
In the first step, you need to create a scanner instance; follow the steps here to create a running instance of the scanner. Then you need to instantiate your address extractor and register it to your scanner:
const ergoObsesrvationExtractor = new ErgoObservationExtractor(
dataSource,
<tokens.json>,
<lock_address>
)
ergoScanner.registerExtractor(ergoObsesrvationExtractor)
Where the token.json
is a source-target map of token ids that are exchanged in the bridge.
Or similarly for cardano:
const cardanoObsesrvationExtractor = new CardanoObservationExtractor(
dataSource,
<tokens.json>,
<lock_address>
)
cardanoScanner.registerExtractor(cardanoObsesrvationExtractor)
TBD
TBD
FAQs
Event observation data extractor for different chains
The npm package @rosen-bridge/observation-extractor receives a total of 15 weekly downloads. As such, @rosen-bridge/observation-extractor popularity was classified as not popular.
We found that @rosen-bridge/observation-extractor demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 2 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
Maintainers back GitHub’s npm security overhaul but raise concerns about CI/CD workflows, enterprise support, and token management.
Product
Socket Firewall is a free tool that blocks malicious packages at install time, giving developers proactive protection against rising supply chain attacks.
Research
Socket uncovers malicious Rust crates impersonating fast_log to steal Solana and Ethereum wallet keys from source code.