
Research
Malicious npm Packages Impersonate Flashbots SDKs, Targeting Ethereum Wallet Credentials
Four npm packages disguised as cryptographic tools steal developer credentials and send them to attacker-controlled Telegram infrastructure.
antistatique-linters-config
Advanced tools
Antistatique truth source and opinionated linters configuration.
Currently supports:
⚠️ Because 🐶Husky will be our main git hooks manager, the following process may rewrite/remove all your existing hooks. Save them before continuing
Requirement:
First, you'll need to install required dependencies and get the linters configuration files (.eslintrc
& .stylelintrc
):
$ npx install-peerdeps --dev antistatique-linters-config -Y -o
$ wget https://raw.githubusercontent.com/antistatique/linters-config/master/.eslintrc
$ wget https://raw.githubusercontent.com/antistatique/linters-config/master/.stylelintrc
Then, to enable pre-commit hook, you'll need to add (and edit) the following code to your ./package.json
:
{
"husky": {
"hooks": {
"pre-commit": "lint-staged"
}
},
"lint-staged": {
"src/**/*.{js,jsx}": "eslint --ext .js,.jsx --max-warnings=0",
"src/**/*.{css,scss,styles.js,styles.jsx}": "stylelint"
}
}
This will lint only the staged files (NOT the entire project) to ensure a fast check of your commit's content.
You can also add the following npm scripts to ./package.json
to manually *trigger linters:
{
"scripts": {
"lint:css": "stylelint ./**/*.{css,scss,styles.js,styles.jsx}",
"lint:js": "eslint . --ext .js,.jsx --max-warnings=0"
}
}
$ yarn lint:js
$ yarn lint:csss
*Don't use those scripts to update the lint-staged
configuration. This will not work properly
The process above has been to ensure consistent quality of our code, regardless of the project. If you want to make your life easier and not always have surprises when you try to commit, make sure that your IDE is properly configured to handle those linters to highlight (and even fix) warnings and errors when editing a file. It's just a friendly advice.
Some ressources:
And just in case, ask your colleagues, they surely have great tips for you 😉
There is not a lot to do to maintain this module. Those are the things to keep in mind while changing stuff:
./package.json
, peerDependencies
must always be the same as the devDependencies
antistatique-dev
to publish a new version on NPMBig thanks for the following libs and contributors:
FAQs
Antistatique opinionated linters configuration
The npm package antistatique-linters-config receives a total of 0 weekly downloads. As such, antistatique-linters-config popularity was classified as not popular.
We found that antistatique-linters-config demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Four npm packages disguised as cryptographic tools steal developer credentials and send them to attacker-controlled Telegram infrastructure.
Security News
Ruby maintainers from Bundler and rbenv teams are building rv to bring Python uv's speed and unified tooling approach to Ruby development.
Security News
Following last week’s supply chain attack, Nx published findings on the GitHub Actions exploit and moved npm publishing to Trusted Publishers.