
Security News
vlt Launches "reproduce": A New Tool Challenging the Limits of Package Provenance
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
ace-the-cat
Advanced tools
This template is for those of you who'd like to make you own npx business cards. This card is for Ace the cat, but feel free to turn it into your own card!
git clone https://github.com/nodebotanist/npx-business-card-howto.git
OR fork it and download your fork.npm i
to install the dev dependenciesnpm run dev
to have automatic build/output of your changes (thanks again @mtheoryx)package.json
with your favorite text editor"name"
field from "ace-the-cat"
to the name you would like to use for your business card"author"
field to your npm usernamenpm login
npm version major
package.json
for you and create a git commit and tag it for you!npm publish
to put your card in the npm registrynpx whatever-you-named-your-card
FAQs
Ace the cat's business card
The npm package ace-the-cat receives a total of 0 weekly downloads. As such, ace-the-cat popularity was classified as not popular.
We found that ace-the-cat demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
Research
Security News
Socket researchers uncovered a malicious PyPI package exploiting Deezer’s API to enable coordinated music piracy through API abuse and C2 server control.
Research
The Socket Research Team discovered a malicious npm package, '@ton-wallet/create', stealing cryptocurrency wallet keys from developers and users in the TON ecosystem.