Research
Security News
Quasar RAT Disguised as an npm Package for Detecting Vulnerabilities in Ethereum Smart Contracts
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
@transferwise/it-automation-package
Advanced tools
A collection of components and styling used by the IT Automation team
This module contains commonly used components that are shared between it-automation services.
Common navbar shared between services. Contains links which are managed through ./assets/*.json
.
Also includes authentication info. Authentication methods must be provided through props.
In the project directory, you can run:
yarn install
Installs dev dependencies for local testing and development of this module
yarn build
Convert ECMAScript 2015+ code into a backwards compatible version of JavaScript in current and older browsers or environments. Run after updating components in this module. Not necessary to run on publishing as that is automated.
yarn test
Run tests on module. Needs implementing still.
All changes should be made to files in ./src
.
When adding new content, upgrade versioning following these guidelines.
npm version major
- When adding new components
npm version minor
- Changing behaviour of existing components or adding/changing assets
npm version patch
- Fixing issues of existing components
Once changes are finalised and version updated, run npm publish
FAQs
A collection of components and styling used by the IT Automation team
We found that @transferwise/it-automation-package demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 313 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
Security News
Research
A supply chain attack on Rspack's npm packages injected cryptomining malware, potentially impacting thousands of developers.
Research
Security News
Socket researchers discovered a malware campaign on npm delivering the Skuld infostealer via typosquatted packages, exposing sensitive data.