
Security News
Attackers Are Hunting High-Impact Node.js Maintainers in a Coordinated Social Engineering Campaign
Multiple high-impact npm maintainers confirm they have been targeted in the same social engineering campaign that compromised Axios.
ask-garbage
Advanced tools
LGTM project for Alexa
import * as Ask from 'ask-sdk';
import { skillConfig, getGarbageIntentHandlers } from 'ask-garbage'
const SUPPORT_TOWN = '松屋町・山手町'
const CITY_NAME = '米花市'
const config: skillConfig = {
DB_TABLE_NAME: 'ASKNGomi',
SKILL_NAME: '米花市ゴミガイド',
NOTIFY_DEFAULT_TIME: '09:00',
NOTIFY_DEFAULT_TIME_STRING: '午前9時',
SUPPORT_TOWN,
CITY_NAME,
HELP_MESSAGES: [
`このスキルでは、${CITY_NAME}で明日や特定の日に出すゴミの種類について聞くことができます。`,
'ゴミの回収日を知りたい場合は、「明日のゴミは?」などと話しかけてください。',
`サポートしている町名は、${SUPPORT_TOWN}です。`
],
OVERSIZE_MESSSAGE: [
'粗大ゴミの収集は有料で、申し込み予約が必要です。',
'米花市のゴミ電話受付センターの電話番号は、<say-as interpret-as="telephone">0701234567</say-as>。',
'電話受付時間は月曜から金曜日が午前9時から午後7時。土曜日曜が午前9時から午後5時です。'
],
CALENDAR: {
'米花市': {
'山手町': {
'もえるごみ': ['毎週月曜', '毎週木曜'],
'もやさないごみ': ['毎週水曜'],
'その他プラ': ['毎週火曜'],
'ペットボトル': ['第一金曜', '第三金曜']
},
'松屋町': {
'もえるごみ': ['毎週火曜', '毎週金曜'],
'もやさないごみ': ['毎週水曜'],
'その他プラ': ['毎週月曜'],
'ペットボトル': ['第二木曜', '第四木曜']
}
}
}
}
const getSkillPackage = (config: skillConfig) => {
const handlers = getGarbageIntentHandlers(config)
return Ask.SkillBuilders.standard()
.addRequestHandlers(...handlers)
.addErrorHandlers(ErrorHandler)
.withTableName(config.DB_TABLE_NAME)
.lambda()
}
export const alexa = getSkillPackage(config)
FAQs
LGTM project for Alexa
We found that ask-garbage demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
Multiple high-impact npm maintainers confirm they have been targeted in the same social engineering campaign that compromised Axios.

Security News
Axios compromise traced to social engineering, showing how attacks on maintainers can bypass controls and expose the broader software supply chain.

Security News
Node.js has paused its bug bounty program after funding ended, removing payouts for vulnerability reports but keeping its security process unchanged.