data:image/s3,"s3://crabby-images/7e228/7e2287ba60e21dee87416ea9983ec241b5307ec2" alt="vlt Launches "reproduce": A New Tool Challenging the Limits of Package Provenance"
Security News
vlt Launches "reproduce": A New Tool Challenging the Limits of Package Provenance
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
apollo-nico
Advanced tools
这是一个为 apollo 文档设计的 nico 主题。
请自己安装 node。版本 >= 0.10.1
$ npm install apollo-nico -g
安装 socket.io
后,将具有 liveloader 的功能
$ npm install socket.io -g
$ apollo-nico init
或者:
$ apollo-nico init button
等价于
$ mkdir button
$ cd button
$ apollo-nico init
文件说明:
README.md: 当前组件的文档
若需要演示和代码示例,可使用以下文档结构书写:
### Button
<div class="apollo-demo demo-button">
<div class="demo-show" >
####示例代码写在这里,且复制代码功能会复制这里的代码。####
<button class="ui-button ui-button-primary ui-button-small">primary small</button></div>
<div class="demo-code">
</div>
</div>
```html
####查看代码功能所显示的代码片段####
<button class="ui-button ui-button-primary ui-button-small">primary small</button>
```
package.json: 当前组件的配置文件,包括作者、组件地址、版本、描述信息:
HISTORY.md: 组件的版本历史信息
$ apollo-nico
http://127.0.0.1:8000/
的服务器,可以对 文档,demo,单元测试 等进行调试。http://127.0.0.1:8000/
,预览该html文件。http://127.0.0.1:8000/
即时生效。$ apollo-nico build
_site
目录,里面存储生成的静态站点。也会编译所有的sass文件apollo-nico
命令虽然会打开预览,但不会将生成的静态站点复制到当前目录下,所以需要使用apollo-nico build
来生成静态站点,并复制到当前目录下。$ apollo-nico build /a
README.md
,package.json
的目录批量生成静态站点,并存放于相应的子目录下。$ apollo-nico sass _text.scss
可以编译目录下面的_text.scss文件,输出text.css文件.输入apollo-nico sass text 也可以
这里使用的 markdown 及 文章结构语法请参考该文档 http://lab.lepture.com/nico/zh/syntax
FAQs
对 nico 及 apollo-theme 的封装,方便跨平台使用
The npm package apollo-nico receives a total of 4 weekly downloads. As such, apollo-nico popularity was classified as not popular.
We found that apollo-nico demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 3 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
vlt's new "reproduce" tool verifies npm packages against their source code, outperforming traditional provenance adoption in the JavaScript ecosystem.
Research
Security News
Socket researchers uncovered a malicious PyPI package exploiting Deezer’s API to enable coordinated music piracy through API abuse and C2 server control.
Research
The Socket Research Team discovered a malicious npm package, '@ton-wallet/create', stealing cryptocurrency wallet keys from developers and users in the TON ecosystem.