
Security News
Node.js Drops Bug Bounty Rewards After Funding Dries Up
Node.js has paused its bug bounty program after funding ended, removing payouts for vulnerability reports but keeping its security process unchanged.
@types/github-url-from-git
Advanced tools
TypeScript definitions for github-url-from-git
npm install --save @types/github-url-from-git
This package contains type definitions for github-url-from-git (https://github.com/tj/node-github-url-from-git).
Files were exported from https://github.com/DefinitelyTyped/DefinitelyTyped/tree/master/types/github-url-from-git.
declare namespace githubUrlFromGit {
interface githubUrlFromGitOptions {
/**
* additional URLs that should be treated as GitHub repos
*/
extraBaseUrls?: string[] | undefined;
}
/**
* Create a regular expression to parse GitHub URLs
*
* @param opts options for regular expression generator
*/
function re(opts?: githubUrlFromGitOptions): RegExp;
}
/**
* Normalize Git URLs into GitHub URLs
*
* @param url Git URL to process
* @param opts options for URL parser
* @returns GitHub URL
*/
declare function githubUrlFromGit(url: string, opts?: githubUrlFromGit.githubUrlFromGitOptions): string;
export = githubUrlFromGit;
These definitions were written by Christian Murphy.
FAQs
TypeScript definitions for github-url-from-git
We found that @types/github-url-from-git demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
Node.js has paused its bug bounty program after funding ended, removing payouts for vulnerability reports but keeping its security process unchanged.

Security News
The Axios compromise shows how time-dependent dependency resolution makes exposure harder to detect and contain.

Research
A supply chain attack on Axios introduced a malicious dependency, plain-crypto-js@4.2.1, published minutes earlier and absent from the project’s GitHub releases.