aspa-express
Advanced tools
+5
-2
| { | ||
| "name": "aspa-express", | ||
| "description": "Simple, lightweight, dependency-free Connect module for using web assets packaged by aspa.", | ||
| "version": "0.4.3", | ||
| "version": "0.4.4", | ||
| "author": "Ionut-Cristian Florescu <ionut.florescu@gmail.com>", | ||
@@ -12,3 +12,6 @@ "keywords": [ | ||
| ], | ||
| "repository": "git://github.com/icflorescu/aspa-express", | ||
| "repository": { | ||
| "type": "git", | ||
| "url": "https://github.com/icflorescu/aspa-express.git" | ||
| }, | ||
| "engines": { | ||
@@ -15,0 +18,0 @@ "node": ">=0.8" |
+5
-2
| # ASPA-Express | ||
| [](http://badge.fury.io/js/aspa-express) | ||
| ASPA-Express is a simple, lightweight, **dependency-free** Connect module for using web assets packaged by ASPA ( [github](https://github.com/icflorescu/aspa) | [npm](https://npmjs.org/package/aspa) ) with [Express](http://expressjs.com/). | ||
| ## Notice | ||
| If you like using aspa and aspa-express, please consider switching to [ASPAX](https://github.com/icflorescu/aspax) for cleaner YML syntax, a smart plugin system to handle various source file types, and automatic watching of included files (i.e. Stylus `@import`s). Have a look at [aspax.github.io](aspax.github.io) for more information. | ||
| ## End of Life Notice - January 2014 | ||
| If you like using ASPA and ASPA-Express, please consider switching to [ASPAX](https://github.com/icflorescu/aspax) for cleaner YML syntax, a smart plugin system to handle various source file types, and automatic watching of included files (i.e. Stylus `@import`s). Have a look at [aspax.github.io](aspax.github.io) for more information. | ||
| ASPA and ASPA-Express will remain in the npm repository, but they will no longer be maintained/updated. | ||
| --- | ||
@@ -9,0 +12,0 @@ |
Environment variable access
Supply chain riskPackage accesses environment variables, which may be a sign of credential stuffing or data theft.
Found 1 instance in 1 package
Filesystem access
Supply chain riskAccesses the file system, and could potentially read sensitive data.
Found 1 instance in 1 package
Environment variable access
Supply chain riskPackage accesses environment variables, which may be a sign of credential stuffing or data theft.
Found 1 instance in 1 package
Filesystem access
Supply chain riskAccesses the file system, and could potentially read sensitive data.
Found 1 instance in 1 package
No repository
Supply chain riskPackage does not have a linked source code repository. Without this field, a package will have no reference to the location of the source code use to generate the package.
Found 1 instance in 1 package
6433
4.41%91
3.41%2
-33.33%