Security News
PyPI’s New Archival Feature Closes a Major Security Gap
PyPI now allows maintainers to archive projects, improving security and helping users make informed decisions about their dependencies.
async-replace
Advanced tools
Run replace on a string and update it asynchronous.
async-replace have the same api as the callback-version of String.prototype.replace
but instead of returning the changed data another callback is called, making it possible to do asynchronous stuff in the callback.
This may sound more complicated than it is, so let's look at an example.
function replacer(match, p1, p2, p3, offset, string){
// p1 is nondigits, p2 digits, and p3 non-alphanumerics
return [p1, p2, p3].join(' - ');
};
newString = "abc12345#$*%".replace(/([^\d]*)(\d*)([^\w]*)/, replacer);
Above is an example of using String.prototype.replace
with a callback. The above could then be written in async-replace like this
function replacer(match, p1, p2, p3, offset, string, done){
// p1 is nondigits, p2 digits, and p3 non-alphanumerics
setTimeout(function() {
done(null, [p1, p2, p3].join(' - '));
}, 100);
};
asyncReplace("abc12345#$*%", /([^\d]*)(\d*)([^\w]*)/, replacer, function(err, result) {
console.log(result); // will print 'abc - 12345 - #$*%';
});
FAQs
Run replace on a string and update it asynchronous
The npm package async-replace receives a total of 1,766 weekly downloads. As such, async-replace popularity was classified as popular.
We found that async-replace demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
PyPI now allows maintainers to archive projects, improving security and helping users make informed decisions about their dependencies.
Research
Security News
Malicious npm package postcss-optimizer delivers BeaverTail malware, targeting developer systems; similarities to past campaigns suggest a North Korean connection.
Security News
CISA's KEV data is now on GitHub, offering easier access, API integration, commit history tracking, and automated updates for security teams and researchers.