
Research
Malicious npm Packages Impersonate Flashbots SDKs, Targeting Ethereum Wallet Credentials
Four npm packages disguised as cryptographic tools steal developer credentials and send them to attacker-controlled Telegram infrastructure.
@theforeman/eslint-plugin-foreman
Advanced tools
Styling code for foreman core and plugins.
@theforeman/eslint-plugin-foreamn
- Adds eslint plugin for opinitated stylingtfm-lint
- Run eslint cli for files in /webpack foldernpm install --save-dev @theforeman/eslint-plugin-foreman
"lint": "tfm-lint"
In plugins it is important to add --plugin
flag:
"lint": "tfm-lint --plugin -d /webpack"
{
"plugins": ["@theforeman/foreman"],
"extends": ["plugin:@theforeman/foreman/core"]
}
{
"plugins": ["@theforeman/foreman"],
"extends": [
"plugin:@theforeman/foreman/core",
"plugin:@theforeman/foreman/plugins"
]
}
Run tfm-lint
in order to get a linting report on files under /webpack
and /script
folders
Add -d
flag with a list of files or folders:
tfm-lint -d /example_folder /other_folder some-file.js
Please checkout the contributing.md
, the roadmap.md
and the open issues.
FAQs
Eslint plugin for the foreman
The npm package @theforeman/eslint-plugin-foreman receives a total of 714 weekly downloads. As such, @theforeman/eslint-plugin-foreman popularity was classified as not popular.
We found that @theforeman/eslint-plugin-foreman demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 2 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Four npm packages disguised as cryptographic tools steal developer credentials and send them to attacker-controlled Telegram infrastructure.
Security News
Ruby maintainers from Bundler and rbenv teams are building rv to bring Python uv's speed and unified tooling approach to Ruby development.
Security News
Following last week’s supply chain attack, Nx published findings on the GitHub Actions exploit and moved npm publishing to Trusted Publishers.