
Research
Malicious npm Packages Impersonate Flashbots SDKs, Targeting Ethereum Wallet Credentials
Four npm packages disguised as cryptographic tools steal developer credentials and send them to attacker-controlled Telegram infrastructure.
@sandstreamdev/chatwoot
Advanced tools
Customer engagement suite, an open-source alternative to Intercom, Zendesk, Salesforce Service Cloud etc.
Chatwoot is an open-source, self-hosted customer engagement suite. Chatwoot lets you view and manage your customer data, communicate with them irrespective of which medium they use, and re-engage them based on their profile.
Chatwoot supports the following conversation channels:
And more.
Other features include:
Detailed documentation is available at chatwoot.com/help-center.
The translation process for Chatwoot web and mobile app is managed at https://translate.chatwoot.com using Crowdin. Please read the translation guide for contributing to Chatwoot.
We use the git-flow branching model. The base branch is develop
.
If you are looking for a stable version, please use the master
or tags labelled as v1.x.x
.
Deploying Chatwoot to Heroku is a breeze. It's as simple as clicking this button:
Follow this link to understand setting the correct environment variables for the app to work with all the features. There might be breakages if you do not set the relevant environment variables.
Chatwoot now supports 1-Click deployment to DigitalOcean as a kubernetes app.
For other supported options, checkout our deployment page.
Looking to report a vulnerability? Please refer our SECURITY.md file.
If you need help or just want to hang out, come, say hi on our Discord server.
Thanks goes to all these wonderful people:
Chatwoot © 2017-2022, Chatwoot Inc - Released under the MIT License.
FAQs
Unknown package
The npm package @sandstreamdev/chatwoot receives a total of 1 weekly downloads. As such, @sandstreamdev/chatwoot popularity was classified as not popular.
We found that @sandstreamdev/chatwoot demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 5 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Four npm packages disguised as cryptographic tools steal developer credentials and send them to attacker-controlled Telegram infrastructure.
Security News
Ruby maintainers from Bundler and rbenv teams are building rv to bring Python uv's speed and unified tooling approach to Ruby development.
Security News
Following last week’s supply chain attack, Nx published findings on the GitHub Actions exploit and moved npm publishing to Trusted Publishers.